CVE-2010-0589 Information
Feb 14, 2021
cve
Description
The Web Install ActiveX control (CSDWebInstaller) in Cisco Secure Desktop (CSD) before 3.5.841 does not properly verify the signatures of downloaded programs which allows remote attackers to force the download and execution of arbitrary files via a crafted web page aka Bug ID CSCta25876.
Reference
http://securitytracker.com/id?1023881 http://www.cisco.com/en/US/products/products_security_advisory09186a0080b25d01.shtml http://www.securityfocus.com/bid/39478 http://www.zerodayinitiative.com/advisories/ZDI-10-072/ https://exchange.xforce.ibmcloud.com/vulnerabilities/57812
Share on: