CVE Vulnerabilities

CVE-2016-2206

Published: Jul 12, 2016 | Modified: Sep 01, 2017
CVSS 3.x
5.7
MEDIUM
Source:
NVD
CVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
3.3 LOW
AV:A/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The management console in Symantec Workspace Streaming (SWS) 7.5.x before 7.5 SP1 HF9 and 7.6.0 before 7.6 HF5 and Symantec Workspace Virtualization (SWV) 7.5.x before 7.5 SP1 HF9 and 7.6.0 before 7.6 HF5 allows remote authenticated users to read arbitrary files by modifying the file-download configuration file.

Affected Software

Name Vendor Start Version End Version
Workspace_streaming Symantec 7.5.0 (including) 7.5.0 (including)
Workspace_streaming Symantec 7.5.0-sp1 (including) 7.5.0-sp1 (including)
Workspace_streaming Symantec 7.6.0 (including) 7.6.0 (including)
Workspace_virtualization Symantec 7.5.0 (including) 7.5.0 (including)
Workspace_virtualization Symantec 7.5.0-sp1 (including) 7.5.0-sp1 (including)
Workspace_virtualization Symantec 7.6.0 (including) 7.6.0 (including)

References