Cisco closes holes in its VPN client and security appliances
Quote:
Network equipment manufacturer Cisco is warning its customers of multiple security vulnerabilities in its next-generation VPN client that can be exploited by an attacker to inject and execute malicious code. Affected products include the AnyConnect Secure Mobility Client, along with Cisco Secure Desktop HostScan for Windows, Mac OS X and Linux. Details on these, including which versions are vulnerable, workarounds and patch information, can be found in the company's security advisory.