Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Symantec Altiris Deployment Solution 'axengine.exe' SQL Injection Vulnerability

Symantec Altiris Deployment Solution is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.

Exploiting this issue could allow an attacker to execute arbitrary code with SYSTEM-level privileges. Successfully exploiting this issue will facilitate in the complete compromise of affected computers.

Versions prior to Symantec Altiris Deployment Solution 6.9.176 are vulnerable.







 

Privacy Statement
Copyright 2009, SecurityFocus