CVE-2015-1484: Symantec Workspace Streaming
Medium severity, CVSS 6.9. EPSS: 0.4% chance of exploitation in the next 30 days.
Unquoted Windows search path vulnerability in the agent in Symantec Workspace Streaming (SWS) 6.1 before SP8 MP2 HF7 and 7.5 before SP1 HF4, when AppMgrService.exe is configured as a service, allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory, as demonstrated by program.exe.
Affected products
- Symantec Workspace Streaming: version 6.1 only; version 7.5 only
Published 2015-04-22. Last modified 2026-06-17.