The Symantec Reporter CLI 10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8 is susceptible to an OS command injection vulnerability. An authenticated malicious administrator with Enable mode access can execute arbitrary OS commands with elevated system privileges.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-4215 | The Symantec Reporter CLI 10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8 is susceptible to an OS command injection vulnerability. An authenticated malicious administrator with Enable mode access can execute arbitrary OS commands with elevated system privileges. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: symantec
Published:
Updated: 2024-09-16T16:28:04.698Z
Reserved: 2018-06-12T00:00:00
Link: CVE-2018-12237
No data.
Status : Modified
Published: 2019-01-24T21:29:00.243
Modified: 2024-11-21T03:44:50.207
Link: CVE-2018-12237
No data.
OpenCVE Enrichment
No data.
EUVD