Release date:
Updated on:
Affected Systems:
Symantec Endpoint Protection 12.1 RU1-MP1
Symantec Endpoint Protection 12.0
Symantec Endpoint Protection 11.0 X
Symantec Endpoint Protection 11.0 RU7 MP2
Symantec Endpoint Protection 11.0 RU7 MP2
Symantec Endpoint Protection 11.0 RU7 MP1
Symantec Endpoint Protection 11.0 RU6-MP3 (11.0.63
Symantec Endpoint Protection 11.0 RU6-MP2 (11.0.62
Symantec Endpoint Protection 11.0 RU6 MP4
Symantec Endpoint Protection 11.0 RU6 MP3
Symantec Endpoint Protection 11.0 RU6 MP2
Symantec Endpoint Protection 11.0 RU6 MP1
Symantec Endpoint Protection 11.0 RU5
Symantec Endpoint Protection 11.0 RU4
Symantec Endpoint Protection 11.0 MR3
Symantec Endpoint Protection 11 RU7
Description:
--------------------------------------------------------------------------------
Bugtraq id: 56846
CVE (CAN) ID: CVE-2012-4348
Symantec Endpoint Protection (SEP) is a new generation of anti-virus and firewall products developed by Symantec Corporation.
Symantec Endpoint Protection 11.0 RU7-MP3 and Symantec Endpoint Protection 12.1 RU2 have a remote code execution vulnerability that allows attackers to execute arbitrary PHP code in the context of an application.
<* Source: anonymous
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Symantec
--------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.symantec.com/business/endpoint-protection