CVE-2015-8152
EUVD-2015-804218.03.2016, 14:59
Cross-site request forgery (CSRF) vulnerability in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6-MP4 allows remote authenticated users to hijack the authentication of administrators for requests that execute arbitrary code by adding lines to a logging script.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| symantec | endpoint_protection_manager | 𝑥 ≤ 12.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References