PT-2022-17419 · Symantec · Symantec Identity Manager

Hugo Boutinon

+1

·

Published

2022-12-16

·

Updated

2022-12-21

·

CVE-2022-25627

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Symantec Identity Manager version 14.4
Description An authenticated administrator with physical access to the environment can execute remote commands on the Management Console. This issue affects the Management Console component.
Recommendations For Symantec Identity Manager version 14.4, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2022-25627

Affected Products

Symantec Identity Manager