Remote Session Handling Flaw in Symantec pcAnywhere and Altiris Solutions
CVE-2012-0290

Currently unrated

Key Information:

Vendor
Symantec
Vendor
CVE Published:
6 February 2012

Summary

A vulnerability in Symantec pcAnywhere and various Altiris solutions allows attackers to exploit a failure in handling the client state following an abnormal session termination. This oversight can enable unauthorized remote access, permitting adversaries to take control of the client system by leveraging an existing, unclosed client session. Effective security measures are crucial to mitigate potential exploits arising from this flaw.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.