← Back

CVE-2008-4389

nvd nist
Published: Jun 17, 2010Modified: Apr 29, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Symantec AppStream 5.2.x and Symantec Workspace Streaming (SWS) 6.1.x before 6.1 SP4 do not properly perform authentication, which allows remote Workspace Streaming servers and man-in-the-middle attackers to download arbitrary executable files onto a client system, and execute these files, via unspecified vectors.

Affected (8)

2 products
Workspace Streaming
Appstream
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Symantec
Version 6.1
Version 6.1 sp1
Version 6.1 sp2
Version 6.1 sp3
Configuration B
4 vulnerable
Vulnerable SoftwareAffected Versions
Symantec
Version 5.2.1
Version 5.2.2
Version 5.2.3
Version 5.2

Timeline

No history available yet.