VYPR
Unrated severityNVD Advisory· Published Aug 18, 2007· Updated Apr 23, 2026

CVE-2007-4415

CVE-2007-4415

Description

Cisco VPN Client on Windows before 5.0.01.0600, and the 5.0.01.0600 InstallShield (IS) release, uses weak permissions for cvpnd.exe (Modify granted to Interactive Users), which allows local users to gain privileges via a modified cvpnd.exe.

Affected products

2
  • cpe:2.3:a:cisco:vpn_client:*:*:windows:*:*:*:*:*+ 1 more
    • cpe:2.3:a:cisco:vpn_client:*:*:windows:*:*:*:*:*range: <=5.0.01
    • cpe:2.3:a:cisco:vpn_client:5.0.01.0600:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

8

News mentions

0

No linked articles in our index yet.