CVE-2015-0691

A certain Cisco JAR file, as distributed in Cache Cleaner in Cisco Secure Desktop (CSD), allows remote attackers to execute arbitrary commands via a crafted web site, aka Bug ID CSCup83001.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
ciscoCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 71%
VendorProductVersion
ciscosecure_desktop
3.0_base:_base
ciscosecure_desktop
3.1.0.31
ciscosecure_desktop
3.1.1
ciscosecure_desktop
3.1.1.45
ciscosecure_desktop
3.1_base:_base
ciscosecure_desktop
3.2.0.136
ciscosecure_desktop
3.2.1.103
ciscosecure_desktop
3.2.1.126
ciscosecure_desktop
3.2_base:_base
ciscosecure_desktop
3.3.0.118
ciscosecure_desktop
3.3.0.151
ciscosecure_desktop
3.3_base:_base
ciscosecure_desktop
3.4.0373
ciscosecure_desktop
3.4.1108
ciscosecure_desktop
3.4.2048
ciscosecure_desktop
3.4_base:_base
ciscosecure_desktop
3.5.841
ciscosecure_desktop
3.5.1077
ciscosecure_desktop
3.5.2001
ciscosecure_desktop
3.5.2003
ciscosecure_desktop
3.5.2008
ciscosecure_desktop
3.5_base:_base
ciscosecure_desktop
3.6.181
ciscosecure_desktop
3.6.185
ciscosecure_desktop
3.6.1001
ciscosecure_desktop
3.6.2002
ciscosecure_desktop
3.6.3002
ciscosecure_desktop
3.6.4021
ciscosecure_desktop
3.6.5005
ciscosecure_desktop
3.6.6020
ciscosecure_desktop
3.6.6104
ciscosecure_desktop
3.6.6203
ciscosecure_desktop
3.6.6210
ciscosecure_desktop
3.6.6228
ciscosecure_desktop
3.6.6234
ciscosecure_desktop
3.6.6249
ciscosecure_desktop
3.6_base:_base
𝑥
= Vulnerable software versions