Vulnerabilities > Symantec > Ghost Solutions Suite > Critical

DATE CVE VULNERABILITY TITLE RISK
2008-02-08 CVE-2008-0640 Improper Authentication vulnerability in Symantec Ghost Solutions Suite 1.1/2.0.0/2.0.1
Symantec Ghost Solution Suite 1.1 before 1.1 patch 2, 2.0.0, and 2.0.1 does not authenticate connections between the console and the Ghost Management Agent, which allows remote attackers to execute arbitrary commands via unspecified RPC requests in conjunction with ARP spoofing.
network
low complexity
symantec CWE-287
critical
10.0