CVE-2013-5008 - CVE House
Back to Database
Status published Medium CVE-2013-5008

The agent and task-agent components in Symantec Management Platform 7.0...

Vulnerability Description

The agent and task-agent components in Symantec Management Platform 7.0 and 7.1 before 7.1 SP2 Mp1.1v7 rollup, as used in certain Altiris products, use the same registry-entry encryption key across different customers' installations, which makes it easier for local users to obtain sensitive information about package-server access, or cause a denial of service, by leveraging knowledge of this key.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2013-5008

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

management platform
Vulnerable Versions:
7.0, 7.1

Timeline

Official Publish: October 10th, 2013
Last Modified: September 16th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.