CVE Vulnerabilities

CVE-2015-1484

Published: Apr 22, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Unquoted Windows search path vulnerability in the agent in Symantec Workspace Streaming (SWS) 6.1 before SP8 MP2 HF7 and 7.5 before SP1 HF4, when AppMgrService.exe is configured as a service, allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory, as demonstrated by program.exe.

Affected Software

NameVendorStart VersionEnd Version
Workspace_streamingSymantec6.1-sp8 (including)6.1-sp8 (including)
Workspace_streamingSymantec7.5-sp1 (including)7.5-sp1 (including)

References