CVE-2009-3107

Symantec Altiris Deployment Solution 6.9.x before 6.9 SP3 Build 430 does not properly restrict access to the listening port for the DBManager service, which allows remote attackers to bypass authentication and modify tasks or the Altiris Database via a connection to this service.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:symantec:altiris_deployment_solution:6.9:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.9:sp1:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.9:sp2:*:*:*:*:*:*

History

No history.

Information

Published : 2009-09-08 23:30

Updated : 2024-02-13 17:38


NVD link : CVE-2009-3107

Mitre link : CVE-2009-3107

CVE.ORG link : CVE-2009-3107


JSON object : View

Products Affected

symantec

  • altiris_deployment_solution
CWE
CWE-287

Improper Authentication