CVE-2011-0364

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
19/02/2011
Last modified:
11/04/2025

Description

The Management Console (webagent.exe) in Cisco Security Agent 5.1, 5.2, and 6.0 before 6.0.2.145 allows remote attackers to create arbitrary files and execute arbitrary code via unspecified parameters in a crafted st_upload request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:security_agent:5.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:security_agent:5.2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:security_agent:6.0:*:*:*:*:*:*:*