Argument Injection Vulnerability in Symantec Critical System Protection
CVE-2015-8800

7.3HIGH

What is CVE-2015-8800?

The vulnerability in Symantec's Critical System Protection products allows remote authenticated users to conduct argument-injection attacks through named-pipe access. This flaw compromises the system's integrity, enabling unauthorized actions that can lead to potential data leakage or manipulation. Users of affected versions should apply patches and upgrades to mitigate these security risks.

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2015-8800 : Argument Injection Vulnerability in Symantec Critical System Protection