PT-2016-6357 · Symantec · Symantec Endpoint Protection Manager+2

Hyp3Rlinx

+1

·

Publicado

2016-06-30

·

Atualizado

2017-09-03

·

CVE-2016-5304

CVSS v3.1

6.8

Média

VetorAV:N/AC:L/PR:L/UI:R/S:C/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Symantec Endpoint Protection Manager versions prior to 12.1 RU6 MP5
Description The issue concerns an open redirect vulnerability in a report-routing component. This vulnerability allows remote authenticated users to redirect users to arbitrary web sites, potentially leading to phishing attacks.
Recommendations For versions prior to 12.1 RU6 MP5, update to Symantec Endpoint Protection Manager version 12.1 RU6 MP5 or later to resolve the issue.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2016-5304

Produtos afetados

Symantec Endpoint Protection Client
Symantec Endpoint Protection Manager
Symantec Endpoint Protection Server