The Symantec Reporter CLI 10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8 is susceptible to an OS command injection vulnerability. An authenticated malicious administrator with Enable mode access can execute arbitrary OS commands with elevated system privileges.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: symantec

Published: 2019-01-24T21:00:00Z

Updated: 2024-09-16T16:28:04.698Z

Reserved: 2018-06-12T00:00:00

Link: CVE-2018-12237

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-01-24T21:29:00.243

Modified: 2019-02-11T19:23:46.727

Link: CVE-2018-12237

cve-icon Redhat

No data.