Vulnerability in Enterprise Security Manager

Apr 6, 2007 09:43 GMT  ·  By

Symantec is regarded as one of the most powerful security companies on the Internet because its employees are designing only applications able to protect computers. Take as example Norton Antivirus, a security solution currently installed on millions of systems and is now regarded as one of the most efficient tools against numerous types of infections. Although Symantec is regarded as a security company, the firm is often affected by several flaws in all of its products. Security company Secunia reported a moderately critical vulnerability in Enterprise Security Manager that can allow an attacker to connect to an affected computer.

"A vulnerability has been reported in Symantec Enterprise Security Manager (ESM), which can be exploited by malicious people to compromise a vulnerable system. The problem is that the ESM agent remote upgrade interface does not authenticate the source of remote upgrade requests. This can be exploited to e.g. deploy a malicious program to a vulnerable system via a specially crafted ESM remote upgrade request," Secunia sustained in the security advisory.

Symantec confirmed the vulnerability and issued patches for every affected version of the program, sustaining that users are also able to request special fixes to their sales representative.

In the past, Symantec was one of the most attacked companies because several products developed by the firm were attacked by the hackers. Take for example Norton Antivirus and Norton Personal Firewall, two of the Symantec solutions that were both affected by vulnerabilities that could allow an attacker to take the control over an affected system. Recently, Symantec encountered a difficult period when a lot of products designed by the company were simultaneously attacked by hackers, the security firms from all over the world reporting the flaws and hack attempts.