CVE Vulnerabilities

CVE-2013-5010

Published: Jan 10, 2014 | Modified: Aug 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The Application/Device Control (ADC) component in the client in Symantec Endpoint Protection (SEP) 11.x before 11.0.7.4 and 12.x before 12.1.2 RU2 and Endpoint Protection Small Business Edition 12.x before 12.1.2 RU2 does not properly handle custom polices, which allows local users to bypass intended policy restrictions and access files or directories via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Endpoint_protection Symantec * 11.0.7.3 (including)
Endpoint_protection Symantec 11.0 (including) 11.0 (including)
Endpoint_protection Symantec 11.0-ru5 (including) 11.0-ru5 (including)
Endpoint_protection Symantec 11.0-ru6 (including) 11.0-ru6 (including)
Endpoint_protection Symantec 11.0-ru6a (including) 11.0-ru6a (including)
Endpoint_protection Symantec 11.0-ru6mp1 (including) 11.0-ru6mp1 (including)
Endpoint_protection Symantec 11.0-ru6mp2 (including) 11.0-ru6mp2 (including)
Endpoint_protection Symantec 11.0.1 (including) 11.0.1 (including)
Endpoint_protection Symantec 11.0.1-mp1 (including) 11.0.1-mp1 (including)
Endpoint_protection Symantec 11.0.1-mp2 (including) 11.0.1-mp2 (including)
Endpoint_protection Symantec 11.0.2 (including) 11.0.2 (including)
Endpoint_protection Symantec 11.0.2-mp1 (including) 11.0.2-mp1 (including)
Endpoint_protection Symantec 11.0.2-mp2 (including) 11.0.2-mp2 (including)
Endpoint_protection Symantec 11.0.4 (including) 11.0.4 (including)
Endpoint_protection Symantec 11.0.4-mp1a (including) 11.0.4-mp1a (including)
Endpoint_protection Symantec 11.0.4-mp2 (including) 11.0.4-mp2 (including)
Endpoint_protection Symantec 11.0.3001 (including) 11.0.3001 (including)
Endpoint_protection Symantec 11.0.6000 (including) 11.0.6000 (including)
Endpoint_protection Symantec 11.0.6100 (including) 11.0.6100 (including)
Endpoint_protection Symantec 11.0.6200 (including) 11.0.6200 (including)
Endpoint_protection Symantec 11.0.6200.754 (including) 11.0.6200.754 (including)
Endpoint_protection Symantec 11.0.6300 (including) 11.0.6300 (including)
Endpoint_protection Symantec 11.0.7000 (including) 11.0.7000 (including)
Endpoint_protection Symantec 11.0.7100 (including) 11.0.7100 (including)

References