6.6
CVSSv2

CVE-2013-4679

Published: 05/08/2013 Updated: 07/10/2013
CVSS v2 Base Score: 6.6 | Impact Score: 10 | Exploitability Score: 2.7
VMScore: 665
Vector: AV:L/AC:M/Au:S/C:C/I:C/A:C

Vulnerability Summary

Symantec Workspace Virtualization prior to 6.x prior to 6.4.1953.0, when a virtual application layer is configured, allows local users to gain privileges via an application that performs crafted interaction with the operating system.

Vulnerable Product Search on Vulmon Subscribe to Product

symantec workspace virtualization

Exploits

# Symantec Workspace Virtualization 6418950 Local Kernel Mode Privilege Escalation Exploit # Date: 2013-7-17 # Author : MJ0011 # Version: Symantec Workspace Virtualization 6418950 # Tested on: Windows XP SP3 DETAILS: In fslxsys 's hook function of "NtQueryValueKey" , it directly write to the buffer of "ResultLength" without any check EXP ...