CVE-2015-6555: Code Injection
Published Nov 12, 2015
·Updated
Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP3 allows remote attackers to execute arbitrary Java code by connecting to the console Java port.
Affected Software
1 affected component
Symantec Endpoint Protection Manager<=12.1
Event History
Nov 12, 2015
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6555?
CVE-2015-6555 is considered to have a high severity due to its potential to allow remote code execution.
2
How do I fix CVE-2015-6555?
To fix CVE-2015-6555, upgrade Symantec Endpoint Protection Manager to version 12.1-RU6-MP3 or later.
3
What versions of Symantec Endpoint Protection are affected by CVE-2015-6555?
CVE-2015-6555 affects versions of Symantec Endpoint Protection Manager prior to 12.1-RU6-MP3.
4
What kind of attack can be executed using the CVE-2015-6555 vulnerability?
CVE-2015-6555 allows remote attackers to execute arbitrary Java code through the console Java port.
5
Is there a specific platform that CVE-2015-6555 affects?
CVE-2015-6555 specifically affects the Symantec Endpoint Protection Manager software.