CVE-2017-6331
CVE-2017-6331
Vexday Risk Score
23Low
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS —EPSS 1.7%KEV nãoPoC públicaNuclei —Metasploit —Patch —
Lifecycle
06 Nov 2017Published on NVD
10 Nov 2017Public PoC
Recommendation: Plan a near-term fix — a public PoC already exists.
Prior to SEP 14 RU1 Symantec Endpoint Protection product can encounter an issue of Tamper-Protection Bypass, which is a type of attack that bypasses the real time protection for the application that is run on servers and clients.
Affected products
Symantec Corporation · Symantec Endpoint Protectionpublic PoCs found — 2
cve_referencewww.exploit-db.com/exploits/43134/unverifiedexploitdbwww.exploit-db.com/exploits/43134unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →