Skip to main content

Symantec Critical System Protection Multiple Vulnerabilities

Last Update Date: 21 Jan 2015 10:45 Release Date: 21 Jan 2015 3189 Views

RISK: High Risk

TYPE: Servers - Other Servers

TYPE: Other Servers

Multiple vulnerabilities were identified in Symantec Critical System Protection. A remote authenticated user can execute arbitrary code on the target system, inject SQL commands, and obtain potentially sensitive information. A remote user can conduct cross-site scripting attacks. A local user can bypass security policy.


Impact

  • Cross-Site Scripting
  • Remote Code Execution
  • Security Restriction Bypass
  • Information Disclosure
  • Data Manipulation

System / Technologies affected

  • 5.2.9.x prior to 5.2.9 MP6

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.


Vulnerability Identifier


Source


Related Link