Symantec pcAnywhere has been reported prone to a locally exploitable vulnerability when it has been configured to run in service mode. It has been reported that a local user or a user who has been granted interactive access to a system via pcAnywhere, may exploit an issue in the chat client to elevate privileges to that of the SYSTEM user. It should be noted that this vulnerability affects Symantec pcAnywhere version 9.01 and 9.2 (which are unsupported). pcAnywhere 10.x is also affected.
Symantec pcAnywhere has been reported prone to a locally exploitable vulnerability when it has been configured to run in service mode. It has been reported that a local user or a user who has been granted interactive access to a system via pcAnywhere, may exploit an issue in the chat client to elevate privileges to that of the SYSTEM user. It should be noted that this vulnerability affects Symantec pcAnywhere version 9.01 and 9.2 (which are unsupported). pcAnywhere 10.x is also affected.