Cisco is warning of two flaws in its VPN Client for Windows that could allow unprivileged to users elevate their privileges to those of LocalSystem account. There is a workaround for one of the vulnerabilities and patches are available for both holes.
More at Cisco's security advisory.
Go to Cisco Subnet for more Cisco news, blogs, discussion forums, security alerts, book giveaways, and more.
The Cisco Subnet blog is written by Network World managing editor Jim Duffy Visit the Cisco Subnet home page daily and while you are there, subscribe to the Cisco Alert e-mail newsletter, which includes news and views generated by the Cisco Subnet community as well as Cisco-related stories on Network World and elsewhere on the Web.
Follow Jim Duffy on Twitter