Is Endpoint Protection vulnerable to the Apache Struts Vulnerability CVE-2017-5638?
search cancel

Is Endpoint Protection vulnerable to the Apache Struts Vulnerability CVE-2017-5638?

book

Article ID: 164809

calendar_today

Updated On:

Products

Endpoint Protection

Issue/Introduction

You would like to know whether Symantec Endpoint Protection (SEP) 12.1 or 14 is vulnerable to Apache Struts (CVE-2017-5638).

Resolution

SEP 12.1 and 14 are not vulnerable to the Apache Struts CVE-2017-5638 vulnerability.

SEP 12.1 and 14 both have the capability to detect an attempted exploit of this vulnerability via Intrusion Prevention. The attack signature for this is Attack: Apache Struts CVE-2017-5638.