Symantec data centre security software has security holes

  • 23 January 2015
  • 1 reply
  • 1058 views

Userlevel 7
Badge +52
Security bod Stefan Viehböck has detailed holes in Symantec's data centre security platforms that the company plugged this week because they allowed hackers to gain privilege access to management servers.
 
 
"Attackers are able to completely compromise the SDCS:SA Server as they can gain access at the system and database level," Viehböck wrote in an advisory
 
"Furthermore attackers can manage all clients and their policies.
"It is highly recommended by SEC Consult not to use this software until a thorough security review (SDCS:SA Server, SDCS:SA Client Policies) has been performed by security professionals and all identified issues have been resolved."
 
Full Article

1 reply

Userlevel 7
Complete access to the server? Wow, that's bad.

Reply