Gesamte Überschrift: Cisco AnyConnect Secure Mobility 2.x, 3.x, 4.x - Client DoS PoC Kategorie: dos / poc Betriebssystem: windows Cisco AnyConnect Secure Mobility Client VPN API suffers from a stack buffer overflow vulnerability when parsing large amount of bytes to the 'strHostNameOrAddress' parameter in 'ConnectVpn' function which resides in the vpnapi.dll library, resulting in memory corruption and overflow of the stack. An attacker can gain access to the system of the affected node and execute arbitrary code. # 0day.today @ http://0day.today/