Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1110 CNY

100%

CVE-2008-4389

EPSS 0.57% · P69
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2008-4389

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Symantec AppStream 5.2.x and Symantec Workspace Streaming (SWS) 6.1.x before 6.1 SP4 do not properly perform authentication, which allows remote Workspace Streaming servers and man-in-the-middle attackers to download arbitrary executable files onto a client system, and execute these files, via unspecified vectors.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Symantec Workspace Streaming Server Authentication任意文件下载漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Symantec AppStream是Windows的应用程序部署框架。 Symantec AppStream及Symantec Workspace Streaming (SWS)无法正确完成认证任务,远程Workspace Streaming服务器和中间人攻击者可利用未明向量下载任意可执行文件到客户端系统,并执行这些文件。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2008-4389

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2008-4389

登录查看更多情报信息。

Vendor Advisories for CVE-2008-4389 (5)

Other References for CVE-2008-4389 (1)

Same Patch Batch · n/a · 2010-06-17 · 28 CVEs total

CVE-2010-1382Apple Mac OS X Wiki跨站脚本攻击漏洞
CVE-2010-2319IDevSpot TextAds 'page'参数SQL注入漏洞
CVE-2010-2318PHP City Portal 'cms_data.php'跨站脚本攻击漏洞
CVE-2010-2317Wmsdesign WmsCms 多个SQL注入漏洞
CVE-2010-2316Wmsdesign WmsCms多个跨站脚本攻击漏洞
CVE-2010-2315SmartISoft phpBazar 'picturelib.php' PHP远程文件包含漏洞
CVE-2010-2314Edmondhui.Homeip NP_Twitter Nucleus插件'DIR_NUCLEUS'远程文件包含漏洞
CVE-2010-2313Anodyne-Productions SIMM Management System 'index.php'目录遍历漏洞
CVE-2010-2063Samba 缓冲区错误漏洞
CVE-2010-1964HP OpenView Network Node Manager ovwebsnmpsrv.exe缓冲区溢出漏洞
CVE-2010-1748Apple Mac OS X多个缓冲区溢出安全漏洞
CVE-2010-1642Samba Smbd守护程序 reply_sesssetup_and_X_spnego函数拒绝服务漏洞
CVE-2010-1635Samba Smbd守护程序chain_reply函数拒绝服务漏洞
CVE-2010-1411Apple Mac OS X ImageIO LibTIFF多个整数溢出漏洞
CVE-2010-0540Apple Mac OS X CUPS web接口跨站请求伪造漏洞
CVE-2010-1381Apple Mac OS X SMB默认配置错误漏洞
CVE-2010-1380Apple Mac OS X cgtexttops CUPS过滤器整数溢出漏洞
CVE-2010-1379Apple Mac OS X Printer Setup输入验证漏洞
CVE-2010-1377Apple Mac OS X Open Directory加密问题漏洞
CVE-2010-1376Apple Mac OS X 网络认证多个格式化字符串漏洞

Showing top 20 of 28 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2008-4389

No comments yet


Leave a comment