Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client do not properly parse commands, which allows local users to gain privileges via unspecified vectors, aka CSCsh30624.
| Software | From | Fixed in |
|---|---|---|
| cisco / trust_agent | 1 | 1.x |
| cisco / security_agent | 5.1 | 5.1.x |
| cisco / security_agent | 5.0 | 5.0.x |
| meetinghouse / aegis_secureconnect_client | windows_platform | windows_platform.x |
| cisco / secure_services_client | 4.x | 4.x.x |