CVE-2014-1649: Symantec Workspace Streaming

High severity, CVSS 7.9. EPSS: 42.3% chance of exploitation in the next 30 days.

The server in Symantec Workspace Streaming (SWS) before 7.5.0.749 allows remote attackers to access files and functionality by sending a crafted XMLRPC request over HTTPS.

Affected products

  • Symantec Workspace Streaming: up to and including 7.5.0; version 6.1 only

Published 2014-05-16. Last modified 2026-06-17.