CVE-2007-1067 describes a privilege escalation vulnerability affecting Cisco Secure Services Client (CSSC), Trust Agent, Cisco Security Agent (CSA) when a vulnerable Trust Agent is present, and Meetinghouse AEGIS SecureConnect Client. This flaw stems from improper command parsing, allowing a local attacker to gain elevated privileges. With a CVSS score of 7.2, it is considered high severity due to its low attack complexity and complete compromise of confidentiality, integrity, and availability. There is no known active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
4.xCPE matchmatch criteria | cpe:2.3:a:cisco:secure_services_client:4.x:*:*:*:*:*:*:* | ||
5.0CPE matchmatch criteria | cpe:2.3:a:cisco:security_agent:5.0:*:*:*:*:*:*:* | ||
5.1CPE matchmatch criteria | cpe:2.3:a:cisco:security_agent:5.1:*:*:*:*:*:*:* | ||
1CPE matchmatch criteria | cpe:2.3:a:cisco:trust_agent:1:*:*:*:*:*:*:* | ||
windows_platformCPE matchmatch criteria | cpe:2.3:a:meetinghouse:aegis_secureconnect_client:windows_platform:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.