CVE-2011-0551

Cross-site request forgery (CSRF) vulnerability in the Web Interface in the Endpoint Protection Manager in Symantec Endpoint Protection (SEP) 11.0.600x through 11.0.6300 allows remote attackers to hijack the authentication of administrators for requests that create administrative accounts.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:symantec:endpoint_protection:11.0.6000:*:*:*:*:*:*:*
cpe:2.3:a:symantec:endpoint_protection:11.0.6100:*:*:*:*:*:*:*
cpe:2.3:a:symantec:endpoint_protection:11.0.6200:*:*:*:*:*:*:*
cpe:2.3:a:symantec:endpoint_protection:11.0.6200.754:*:*:*:*:*:*:*
cpe:2.3:a:symantec:endpoint_protection:11.0.6300:*:*:*:*:*:*:*

History

No history.

Information

Published : 2011-08-15 19:55

Updated : 2024-02-28 11:41


NVD link : CVE-2011-0551

Mitre link : CVE-2011-0551

CVE.ORG link : CVE-2011-0551


JSON object : View

Products Affected

symantec

  • endpoint_protection
CWE
CWE-352

Cross-Site Request Forgery (CSRF)