Member Panel


Sponsors and Ads

Live Tag Cloud

PC Forum PC Help Forum » Security & Safety » Security Watch » Symantec Warns of Serious Hole in Sygate SMS Product

Security Watch - Symantec Warns of Serious Hole in Sygate SMS Product posted in the Security & Safety forums; Symantec Warns of Serious Hole in Sygate SMS Product Symantec said Feb. 1 that a high-risk hole could allow a remote attacker to take over vulnerable Sygate Management Servers. The ...

JOIN US NOW to remove these Ads

Post New Thread  Reply
  #1  
Old 02-03-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,044
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default Symantec Warns of Serious Hole in Sygate SMS Product

Symantec Warns of Serious Hole in Sygate SMS Product

Symantec said Feb. 1 that a high-risk hole could allow a remote attacker to take over vulnerable Sygate Management Servers.


The company issued a patch for the Sygate application vulnerability.

If left unpatched, remote attackers could use SQL (Structure Query Language) code to overwrite passwords for accounts on the server, possibly gaining administrative access to the server, Symantec said.

Symantec acquired the SMS (Sygate Management Server) technology with Sygate Technologies in October 2005.

SMS is one component of the Sygate Secure Enterprise platform and is used to distribute security policies and software updates to security agent software that runs on computer "endpoints" such as servers, desktop and laptop computers.

Malicious hackers can modify URLs (Uniform Resource Locators) used to pass data to the Web application and inject their own SQL code, which is then run by the backend database.
An attacker would need network or local access to the SMS server to launch an attack.
The vulnerability is an example of a SQL injection hole: a common kind of Web application.


If successful, the attacker could change the password of the SMS administrator account, gain password to the Management Server and disable Sygate agents or use the server to distribute malicious code to the machines running the Sygate agents, Symantec said.

The hole affects SMS Versions 3.5, 4.0 and 4.1, according to an alert published by Symantec.
In a separate warning, Secunia Inc. of Copenhagen, Denmark, rated the hole "moderately critical."

Symantec recommended companies update their Sygate SMS servers as soon as possible. In the meantime, organizations should use access control lists to block Web-based access to the SMS server application and restrict network access to the SMS console to network administrators, Symantec said.

From , and more here:
http://www.eweek.com/article2/0,1895,1918167,00.asp


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -


Reply
New! Norton Internet Security 2008 – Download Now Click Here

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On

Similar Threads
Thread Thread Starter Forum Replies Last Post
[Fixed] Is Spyware, etc. causing system degradation? reillytj [Fixed] Hijackthis! Logs 6 01-12-2006 01:20 AM
[Fixed] Hanging Programs Panache [Fixed] Hijackthis! Logs 60 09-06-2005 04:09 AM
[Fixed] Help Me Please Panache [Fixed] Hijackthis! Logs 20 08-06-2005 11:19 PM


All times are GMT +1. The time now is 09:25 PM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top