The management console in Symantec Endpoint Protection (SEP) 11.0 before RU7-MP3 and 12.1 before RU2, and Symantec Endpoint Protection Small Business Edition 12.x before 12.1 RU2, does not properly validate input for PHP scripts, which allows remote authenticated users to execute arbitrary code via unspecified vectors.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2012-12-18T20:00:00
Updated: 2024-08-06T20:35:09.115Z
Reserved: 2012-08-16T00:00:00
Link: CVE-2012-4348
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-12-18T20:55:01.227
Modified: 2024-11-21T01:42:43.420
Link: CVE-2012-4348
Redhat
No data.