Symantec.Endpoint.Protection.Manager.XSS
Description
This indicates an attack attempt against a Cross Site Scripting vulnerability in Symantec Endpoint Protection Manager.
The vulnerability is due to insufficient validation of user supplied data. A remote attacker can exploit this to execute arbitrary script code within context of the user browser.
Affected Products
Symantec Endpoint Protection Manager 12.1.x prior to 12.1.5
Impact
System Compromise: Remote attackers can execute arbitrary script code within the context of the target user's browser
Recommended Actions
Apply the most recent upgrade or patch from the vendor.
http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20141105_00
Coverage
| IPS (Regular DB) | |
| IPS (Extended DB) |
Version Updates
| Date | Version | Status | Detail |
|---|---|---|---|
| 2019-01-23 | 14.531 |
Modified
|
Sig Added |