Back to search
CVE-2008-4389
Published: Jun 17, 2010
Modified: Aug 7, 2024
PUBLISHED
Description
Symantec AppStream 5.2.x and Symantec Workspace Streaming (SWS) 6.1.x before 6.1 SP4 do not properly perform authentication, which allows remote Workspace Streaming servers and man-in-the-middle attackers to download arbitrary executable files onto a client system, and execute these files, via unspecified vectors.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
40611
vdb-entry
x_refsource_BID
ADV-2010-1511
vdb-entry
x_refsource_VUPEN
VU#221257
third-party-advisory
x_refsource_CERT-VN
40233
third-party-advisory
x_refsource_SECUNIA
symantec-appstream-download-ce(59504)
vdb-entry
x_refsource_XF
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now