QID 379485
QID 379485: Cisco Secure Client Carriage Return Line Feed Injection Vulnerability (cisco-sa-secure-client-crlf-W43V4G7)
A vulnerability in the SAML authentication process of Cisco Secure Client could allow an unauthenticated, remote attacker to conduct a carriage return line feed (CRLF) injection attack against a user.
Affected Products
Cisco Secure Client for Linux, MacOS, and Windows: Version 5.1 prior to 5.1.2.42, from version 4.10.04065 prior to 4.10.08025
QID Detection Logic (Authenticated):
Linux: This checks for vulnerable version of Cisco Secure Client
Windows: This checks for vulnerable version of Cisco Secure Client using the registry information.
Successful exploit could allow an unauthenticated, remote attacker to conduct a carriage return line feed (CRLF) injection attack against a user.
Customers are advised to refer to cisco-sa-secure-client-crlf-W43V4G7 for more information.
- cisco-sa-secure-client-crlf-W43V4G7 -
sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-secure-client-crlf-W43V4G7
CVEs related to QID 379485
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-secure-client-crlf-W43V4G7 |
|