The Symantec Reporter CLI 10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8 is susceptible to an OS command injection vulnerability. An authenticated malicious administrator with Enable mode access can execute arbitrary OS commands with elevated system privileges.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: symantec
Published: 2019-01-24T21:00:00Z
Updated: 2024-09-16T16:28:04.698Z
Reserved: 2018-06-12T00:00:00
Link: CVE-2018-12237
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-01-24T21:29:00.243
Modified: 2024-11-21T03:44:50.207
Link: CVE-2018-12237
Redhat
No data.