PT-2013-3272 · Microsoft+1 · Windows+1

Published

2013-03-26

·

Updated

2026-05-22

·

CVE-2013-1609

CVSS v2.0

6.8

Medium

VectorAV:L/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Symantec Enterprise Vault (EV) for File System Archiving versions prior to 9.0.4 Symantec Enterprise Vault (EV) for File System Archiving versions 10.x prior to 10.0.1
Description The issue concerns unquoted Windows search path vulnerabilities in the File Collector and File PlaceHolder services. This could allow local users to gain privileges via a Trojan horse program.
Recommendations For versions prior to 9.0.4, update to version 9.0.4 or later. For versions 10.x prior to 10.0.1, update to version 10.0.1 or later.

Fix

Related Identifiers

CVE-2013-1609

Affected Products

Symantec Enterprise Vault
Windows