XMLRPC Remote Code Execution Vulnerability in Symantec Workspace Streaming
CVE-2014-1649

Currently unrated

Key Information:

Vendor
Symantec
Vendor
CVE Published:
16 May 2014

Summary

The vulnerability in Symantec Workspace Streaming enables remote attackers to exploit a flaw in the XMLRPC interface. By sending specially crafted requests over HTTPS, attackers can gain unauthorized access to sensitive files and system functionalities, potentially leading to a complete system compromise. This issue affects versions of Symantec Workspace Streaming prior to 7.5.0.749 and poses significant risks if not mitigated.

References

EPSS Score

40% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.