CVE-2011-3479: Medium severity symantec pcanywhere vulnerability
Symantec pcAnywhere 12.5.x through 12.5.3, and IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), uses world-writable permissions for product-installation files, which allows local users to gain privileges by modifying a file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-3479?
CVE-2011-3479 is considered to have a moderate severity due to its potential for local privilege escalation.
How do I fix CVE-2011-3479?
To fix CVE-2011-3479, ensure that product-installation files do not have world-writable permissions and apply the latest security updates from Symantec.
What versions are affected by CVE-2011-3479?
CVE-2011-3479 affects Symantec pcAnywhere versions 12.5.x and 12.6.x, specifically up to 12.6.7580.
Can local users exploit CVE-2011-3479?
Yes, local users can exploit CVE-2011-3479 by modifying world-writable files to gain elevated privileges.
Is CVE-2011-3479 still relevant today?
While CVE-2011-3479 is older, it remains relevant for organizations using the affected Symantec pcAnywhere versions.