SSL: Symantec Endpoint Protection Manager Cross Site Request Forgery

This signature detects attempts to exploit a known vulnerability in the Symantec Endpoint Protection Manager . A successful exploit can lead to Cross-Site Request Forgery and spoof requests to the server as if from the target user.

Extended Description

Multiple cross-site request forgery (CSRF) vulnerabilities in management scripts in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allow remote authenticated users to hijack the authentication of arbitrary users.

Affected Products

Symantec endpoint_protection_manager

References

CVE: CVE-2016-3653

Short Name
SSL:SYMANTEC-CSRF
Severity
Major
Recommended
True
Recommended Action
Drop
Category
SSL
Keywords
CVE-2016-3653 Cross Endpoint Forgery Manager Protection Request Site Symantec
Release Date
08/04/2016
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3337
False Positive
Unknown
Vendors

Symantec

CVSS Score

6.0

Found a potential security threat?