Security Portal

Intrusion Prevention Service

Signature Version: 4.818


WEB Symantec IM Manager Web Interface ProcessAction Code Execution (CVE-2011-0554)
Threat Level: High
Release Date: 2011/12/27
Category: Web Attacks
Signature ID: 1055157
Included In: Full
Affected OS: Windows
Description: A code execution vulnerability exists in Symantec IM Manager Web Interface. The vulnerability is due to improper input validation on the rdProcess variable in rdprocess.aspx.
Impact: Remote code execution
Recommendation: Update vendor's patch.
False Positive: None
False Negative: None
Additional Information (Links open in new window):
Reference(s): CVE-2011-0554

Search the Threat Database
Enter Rule ID or Name