4.9
CVSSv2

CVE-2016-5304

Published: 30/06/2016 Updated: 03/09/2017
CVSS v2 Base Score: 4.9 | Impact Score: 4.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 6.8 | Impact Score: 4 | Exploitability Score: 2.3
VMScore: 495
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:N

Vulnerability Summary

Open redirect vulnerability in a report-routing component in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

symantec endpoint protection manager

Exploits

[+] Credits: John Page aka HYP3RLINX [+] Website: hyp3rlinxaltervistaorg [+] Source: hyp3rlinxaltervistaorg/advisories/SYMANTEC-SEPM-MULTIPLE-VULNStxt [+] ISR: ApparitionSec Vendor: ================ wwwsymanteccom Product: =========== SEPM Symantec Endpoint Protection Manager and client v121 SEPM provides a centrally managed ...
Symantec Endpoint Protection Manager and Client version 121 suffers from cross site request forgery, cross site scripting, and open redirection vulnerabilities ...