Cisco AnyConnect Posture Security Service TOCTOU Local Privilege Escalation Exploit Update

The Security Service of Cisco AnyConnect Posture (HostScan) for Windows incorrectly restricts access to internal IPC commands. This could enable low-privileged users to achieve NT AUTHORITY\SYSTEM privileges by sending crafted IPC commands.

This module bypasses CVE-2021-1366 by abusing a Time-of-check Time-of-use (TOCTOU) Race Condition in the priv_file_copy command.



This update adds code to launch the exploit for CVE-2021-1366 if the detected version is vulnerable to it.
Exploit Platform
Exploit Type
Product Name