CVE-2012-0299
Symantec Web Gateway upload_file Remote Code Execution Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
The file-management scripts in the management GUI in Symantec Web Gateway 5.0.x before 5.0.3 allow remote attackers to upload arbitrary code to a designated pathname, and possibly execute this code, via unspecified vectors.
Los programas de gestión de ficheros en el GUI en Symantec Web Gateway v5.0.x anteriores a v5.0.3 permite a atacantes remotos subir código a un path concreto, y posiblemente ejecutar este código, a través de vectores no determinados.
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Symantec Web Gateway. Authentication is not required to exploit this vulnerability.
The specific flaw exists because Symantec Web Gateway allows unauthenticated users to upload a file while preserving the file extension. This allows users to upload additional script files that can be used to execute remote code from user supplied commands under the context of the webserver.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2012-01-04 CVE Reserved
- 2012-05-21 CVE Published
- 2012-06-10 First Exploit
- 2024-08-06 CVE Updated
- 2024-11-19 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-264: Permissions, Privileges, and Access Controls
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/53443 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/75730 | Vdb Entry |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/19038 | 2012-06-10 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Symantec Search vendor "Symantec" | Web Gateway Search vendor "Symantec" for product "Web Gateway" | 5.0 Search vendor "Symantec" for product "Web Gateway" and version "5.0" | - |
Affected
| ||||||
Symantec Search vendor "Symantec" | Web Gateway Search vendor "Symantec" for product "Web Gateway" | 5.0.1 Search vendor "Symantec" for product "Web Gateway" and version "5.0.1" | - |
Affected
| ||||||
Symantec Search vendor "Symantec" | Web Gateway Search vendor "Symantec" for product "Web Gateway" | 5.0.2 Search vendor "Symantec" for product "Web Gateway" and version "5.0.2" | - |
Affected
|