Vulnerability Name:

CVE-2013-5011 (CCN-90226)

Assigned:2013-07-29
Published:2014-01-09
Updated:2017-08-29
Summary:Unquoted Windows search path vulnerability in the client in Symantec Endpoint Protection (SEP) 11.x before 11.0.7.4 and 12.x before 12.1.2 RU2 and Endpoint Protection Small Business Edition 12.x before 12.1.2 RU2 allows local users to gain privileges via a crafted program in the %SYSTEMDRIVE% directory.
CVSS v3 Severity:7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): High
Privileges Required (PR): Low
User Interaction (UI): Required
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
5.3 Medium (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
6.6 Medium (CCN CVSS v2 Vector: AV:L/AC:M/Au:S/C:C/I:C/A:C)
4.9 Medium (CCN Temporal CVSS v2 Vector: AV:L/AC:M/Au:S/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Medium
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-22
Vulnerability Consequences:Gain Privileges
References:Source: MITRE
Type: CNA
CVE-2013-5011

Source: BID
Type: UNKNOWN
64130

Source: CCN
Type: BID-64130
Symantec Endpoint Protection CVE-2013-5011 Local Privilege Escalation Vulnerability

Source: CCN
Type: SYM14-001
Symantec Endpoint Protection Privilege Assumption, Policy Bypass, Local Elevation of Privilege

Source: CONFIRM
Type: Vendor Advisory
http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20140109_00

Source: XF
Type: UNKNOWN
symantec-endpoint-cve20135011-priv-esc(90226)

Source: XF
Type: UNKNOWN
symantec-endpoint-cve20135011-priv-esc(90226)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:symantec:endpoint_protection:11.0:*:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0:ru5:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0:ru6:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0:ru6a:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0:ru6mp1:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0:ru6mp2:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.1:mp1:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.1:mp2:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.2:*:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.2:mp1:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.2:mp2:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.4:*:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.4:mp1a:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.4:mp2:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:*:*:*:*:*:*:*:* (Version <= 11.0.7.3)
  • OR cpe:/a:symantec:endpoint_protection:11.0.3001:*:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.6000:*:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.6100:*:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.6200:*:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.6200.754:*:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.6300:*:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.7000:*:*:*:*:*:*:*
  • OR cpe:/a:symantec:endpoint_protection:11.0.7100:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:symantec:endpoint_protection:11.0.6200.754:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    symantec endpoint protection 11.0
    symantec endpoint protection 11.0 ru5
    symantec endpoint protection 11.0 ru6
    symantec endpoint protection 11.0 ru6a
    symantec endpoint protection 11.0 ru6mp1
    symantec endpoint protection 11.0 ru6mp2
    symantec endpoint protection 11.0.1
    symantec endpoint protection 11.0.1 mp1
    symantec endpoint protection 11.0.1 mp2
    symantec endpoint protection 11.0.2
    symantec endpoint protection 11.0.2 mp1
    symantec endpoint protection 11.0.2 mp2
    symantec endpoint protection 11.0.4
    symantec endpoint protection 11.0.4 mp1a
    symantec endpoint protection 11.0.4 mp2
    symantec endpoint protection *
    symantec endpoint protection 11.0.3001
    symantec endpoint protection 11.0.6000
    symantec endpoint protection 11.0.6100
    symantec endpoint protection 11.0.6200
    symantec endpoint protection 11.0.6200.754
    symantec endpoint protection 11.0.6300
    symantec endpoint protection 11.0.7000
    symantec endpoint protection 11.0.7100
    symantec endpoint protection 11.0.6200.754