10
CVSSv2

CVE-2012-0290

Published: 06/02/2012 Updated: 06/01/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Symantec pcAnywhere up to and including 12.5.3, Altiris IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), Altiris Client Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), and Altiris Deployment Solution Remote pcAnywhere Solution 7.1 (aka 12.5.x and 12.6.x) do not properly handle the client state after abnormal termination of a remote session, which allows remote malicious users to obtain access to the client by leveraging an "open client session."

Vulnerable Product Search on Vulmon Subscribe to Product

symantec pcanywhere 12.5

symantec pcanywhere 8.0

symantec pcanywhere 5.0

symantec pcanywhere 11.5

symantec pcanywhere 11.5.1

symantec pcanywhere 12.1

symantec pcanywhere

symantec pcanywhere 12.5.265

symantec pcanywhere 10.5

symantec pcanywhere 9.2

symantec pcanywhere 12.5.539

symantec pcanywhere 12.6.7580

symantec pcanywhere 12.6.65

symantec altiris client management suite pcanywhere solution 12.6

symantec altiris client management suite pcanywhere solution 12.5

symantec altiris deployment solution remote pcanywhere solution 12.5

symantec altiris deployment solution remote pcanywhere solution 12.6