Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2020-3153

79
FAUCET Score

CVE-2020-3153 is a local privilege escalation vulnerability in the installer component of Cisco AnyConnect Secure Mobility Client for Windows. It allows an authenticated local attacker to copy arbitrary files to system directories with system-level privileges, potentially leading to DLL hijacking and other attacks. The vulnerability has a CVSS score of 6.5 (Medium) and requires valid user credentials for exploitation. This flaw is actively exploited in the wild, including in known ransomware campaigns, and has a Metasploit module available. Its EPSS score is 0.25087, indicating a higher likelihood of exploitation compared to most CVEs. The vulnerability has garnered significant community discussion and media coverage, with multiple articles detailing its exploitation and Cisco's warnings.

Impacted Technologies

VendorProductVersion(s)CPE
< 4.8.02042CPE matchmatch criteria
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:*:*:*:*:*:windows:*:*

CVSS Data

CVSS version used by this source: 3.0

6.5MEDIUM

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
NONE
Integrity Impact
HIGH
Availability Impact
NONE
Exploitability Score
2.0
Impact Score
4.0
CvssVersion
3.0

Exploit Intelligence

EPSS Score
27.45%
Probability of exploitation in next 30 days
EPSS Percentile
97.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-26
Model: v2026.06.15
Added to KEV · Oct 24, 2022
Metasploit: Cisco AnyConnect Privilege Escalations (CVE-2020-3153 and CVE-2020-3433) · Aug 5, 2020
This CVE's current EPSS score of 0.2745 is in the 100th percentile among its peer group of 15,938 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (1)

ciscovendor investigatingvia nvd_reference
View patch

References

cisa.gov / known-exploited-vulnerabilities-catalog
US Government Resource
packetstormsecurity.com / files/157340/Cisco-AnyConnect-Secure-Mobility-Client-4.8.01090-Privilege-Escalation.html
ExploitThird Party AdvisoryVDB Entry
packetstormsecurity.com / files/158219/Cisco-AnyConnect-Path-Traversal-Privilege-Escalation.html
ExploitThird Party AdvisoryVDB Entry
packetstormsecurity.com / files/159420/Cisco-AnyConnect-Privilege-Escalation.html
ExploitThird Party AdvisoryVDB Entry
seclists.org / fulldisclosure/2020/Apr/43
ExploitMailing ListThird Party Advisory
tools.cisco.com / security/center/content/CiscoSecurityAdvisory/cisco-sa-ac-win-path-traverse-qO4HWBsj
Vendor Advisory