Medium severity4.8NVD Advisory· Published May 16, 2019· Updated Jun 17, 2026
CVE-2019-1853
CVE-2019-1853
Description
A vulnerability in the HostScan component of Cisco AnyConnect Secure Mobility Client for Linux could allow an unauthenticated, remote attacker to read sensitive information on an affected system. The vulnerability exists because the affected software performs improper bounds checks. An attacker could exploit this vulnerability by crafting HTTP traffic for the affected component to download and process. A successful exploit could allow the attacker to read sensitive information on the affected system.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:cisco:anyconnect_secure_mobility_client:4.6\(2074\):*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:cisco:anyconnect_secure_mobility_client:4.6\(2074\):*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
2- www.securityfocus.com/bid/108364nvdThird Party AdvisoryVDB Entry
- tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190515-anyconnectclient-oob-readnvdVendor Advisory
News mentions
0No linked articles in our index yet.