CVE-2013-5009: High severity symantec endpoint protection vulnerability
The Management Console in Symantec Endpoint Protection (SEP) 11.x before 11.0.7.4 and 12.x before 12.1.2 RU2 and Endpoint Protection Small Business Edition 12.x before 12.1.2 RU2 does not properly perform authentication, which allows remote authenticated users to gain privileges by leveraging access to a limited-admin account.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5009?
CVE-2013-5009 has been rated as a medium severity vulnerability due to improper authentication in Symantec Endpoint Protection.
How do I fix CVE-2013-5009?
To address CVE-2013-5009, upgrade the Symantec Endpoint Protection to version 11.0.7.4 or later for 11.x and to 12.1.2 RU2 or later for 12.x.
What versions are affected by CVE-2013-5009?
CVE-2013-5009 affects Symantec Endpoint Protection 11.x prior to 11.0.7.4 and 12.x prior to 12.1.2 RU2.
Who is at risk due to CVE-2013-5009?
Organizations using the affected versions of Symantec Endpoint Protection may be at risk as remote authenticated users can gain elevated privileges.
Is there a workaround for CVE-2013-5009?
There is no official workaround for CVE-2013-5009; the recommended action is to upgrade to the fixed versions.