CVE-2016-2206: Symantec Workspace Streaming

Medium severity, CVSS 5.7. EPSS: 1% chance of exploitation in the next 30 days.

The management console in Symantec Workspace Streaming (SWS) 7.5.x before 7.5 SP1 HF9 and 7.6.0 before 7.6 HF5 and Symantec Workspace Virtualization (SWV) 7.5.x before 7.5 SP1 HF9 and 7.6.0 before 7.6 HF5 allows remote authenticated users to read arbitrary files by modifying the file-download configuration file.

Affected products

  • Symantec Workspace Streaming: version 7.5.0 only; version 7.6.0 only
  • Symantec Workspace Virtualization: version 7.5.0 only; version 7.6.0 only

Published 2016-07-12. Last modified 2026-06-17.