CVE-2011-0926
Last modified
CVE-2011-0926 is a vulnerability of currently unknown severity. A certain ActiveX control in CSDWebInstaller.ocx in Cisco Secure Desktop (CSD) does not properly verify the signature of an unspecified downloaded program, which allows remote attackers to execute arbitrary code by spoofing the CSD installation process, a different vulnerability than CVE-2010-0589.. EPSS estimates a 6.81% chance of exploitation in the next 30 days.
Description
A certain ActiveX control in CSDWebInstaller.ocx in Cisco Secure Desktop (CSD) does not properly verify the signature of an unspecified downloaded program, which allows remote attackers to execute arbitrary code by spoofing the CSD installation process, a different vulnerability than CVE-2010-0589.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Secure Desktop | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2011-0926?
How severe is CVE-2011-0926?
How do I fix CVE-2011-0926?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2011
- CVE-2011-0920The Remote Console in IBM Lotus Domino, when a certain unsup…
- CVE-2011-0921crs.exe in the Cell Manager Service in the client in HP Data…
- CVE-2011-0922The client in HP Data Protector allows remote attackers to e…
- CVE-2011-0923The client in HP Data Protector does not properly validate E…
- CVE-2011-0924The client in HP Data Protector does not verify the contents…
- CVE-2011-0925The CSDWebInstallerCtrl ActiveX control in CSDWebInstaller.o…
- CVE-2011-0935The PKI functionality in Cisco IOS 15.0 and 15.1 does not pr…
- CVE-2011-0939Unspecified vulnerability in Cisco IOS 12.4, 15.0, and 15.1,…
- CVE-2011-0941Memory leak in Cisco Unified Communications Manager (CUCM) 6…
- CVE-2011-0943Cisco IOS XR 3.8.3, 3.8.4, and 3.9.1 allows remote attackers…
- CVE-2011-0944Cisco IOS 12.4, 15.0, and 15.1 allows remote attackers to ca…
- CVE-2011-0945Memory leak in the Data-link switching (aka DLSw) feature in…
Are you affected by CVE-2011-0926?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
