CVE-2020-3153
mediumCVSS v3 Base Score
6.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N
EPSS Score
27.5%
Exploitation probability in 30 days
Top 2% most likely to be exploited
Attack Characteristics
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Confidentiality
None
Integrity
High
Availability
None
Published: February 19, 2020 (2391 days ago)
Last Modified: August 12, 2026
Vendor: Cisco
Source: NVD
⚠️ CISA Known Exploited Vulnerability
Added to KEV: 2022-10-24
Remediation Due: 2022-11-14 (⚠ 1392d overdue)
Ransomware Campaign: Known
Vulnerability Report
Generated by CyberWatcher
Description
A vulnerability in the installer component of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated local attacker to copy user-supplied files to system level directories with system level privileges. The vulnerability is due to the incorrect handling of directory paths. An attacker could exploit this vulnerability by creating a malicious file and copying the file to a system directory. An exploit could allow the attacker to copy malicious files to arbitrary locations with system level privileges. This could include DLL pre-loading, DLL hijacking, and other related attacks. To exploit this vulnerability, the attacker needs valid credentials on the Windows system.
CWE
CWE-427Affected Products
cisco anyconnect secure mobility client