Oval Definition:oval:org.cisecurity:def:1249
Revision Date:2016-11-11Version:8
Title:SQL injection vulnerability in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6-MP4 – CVE-2015-8153
Description:SQL injection vulnerability in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6-MP4 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2015-8153
Platform(s):Microsoft Windows 10
Microsoft Windows 7
Microsoft Windows 8
Microsoft Windows 8.1
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Product(s):Symantec Endpoint Protection
Definition Synopsis
  • Symantec Endpoint Protection Manager is installed + version
  • Symantec Endpoint Protection Manager is installed
  • AND Check if Symantec Endpoint Protection Manager version is less than 12.1.6867.6400
  • OR Symantec Endpoint Protection Client is installed + version
  • Symantec Endpoint Protection 12.1 Client is installed
  • AND Check if Symantec Endpoint Protection Client version is less than 12.1.6867.6400
  • BACK