Security Advisory

CVE-2013-5010

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2014-01-10 16:00:00
Last updated 2024-08-06 16:59:41
Assigner symantec
CVSS score not scored
State PUBLISHED

Description

The Application/Device Control (ADC) component in the client in Symantec Endpoint Protection (SEP) 11.x before 11.0.7.4 and 12.x before 12.1.2 RU2 and Endpoint Protection Small Business Edition 12.x before 12.1.2 RU2 does not properly handle custom polices, which allows local users to bypass intended policy restrictions and access files or directories via unspecified vectors.