CVE-2012-2495

medium
Published 2012-06-20 ยท Modified 2026-04-29
CVSS v3
โ€”
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
4.3

Description

The HostScan downloader implementation in Cisco AnyConnect Secure Mobility Client 3.x before 3.0 MR8 and Cisco Secure Desktop before 3.6.6020 does not compare the timestamp of offered software to the timestamp of installed software, which allows remote attackers to force a version downgrade by using (1) ActiveX or (2) Java components to offer signed code that corresponds to an older software release, aka Bug ID CSCtx74235.

Predictions

Exploit likelihood
20%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

Application impact

VendorProductVersionsFixed
cisco ciscoanyconnect_secure_mobility_client3.0
cisco ciscosecure_desktop{"endIncluding":"3.5.2008"}
cisco ciscosecure_desktop3.1
cisco ciscosecure_desktop3.1.1
cisco ciscosecure_desktop3.1.1.27
cisco ciscosecure_desktop3.1.1.33
cisco ciscosecure_desktop3.1.1.45
cisco ciscosecure_desktop3.2
cisco ciscosecure_desktop3.2.1
cisco ciscosecure_desktop3.3
cisco ciscosecure_desktop3.4
cisco ciscosecure_desktop3.4.1
cisco ciscosecure_desktop3.4.2
cisco ciscosecure_desktop3.4.2048
cisco ciscosecure_desktop3.5
cisco ciscosecure_desktop3.5.841
cisco ciscosecure_desktop3.5.1077
cisco ciscosecure_desktop3.5.2001

References

CWEs

CWE-20

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.