Back to search
CVE-2010-0114
Published: Dec 22, 2010
Modified: Aug 7, 2024
PUBLISHED
Description
fw_charts.php in the reporting module in the Manager (aka SEPM) component in Symantec Endpoint Protection (SEP) 11.x before 11 RU6 MP2 allows remote attackers to bypass intended restrictions on report generation, overwrite arbitrary PHP scripts, and execute arbitrary code via a crafted request.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
1024900
vdb-entry
x_refsource_SECTRACK
symantec-endpoint-fwcharts-code-execution(64118)
vdb-entry
x_refsource_XF
45372
vdb-entry
x_refsource_BID
ADV-2010-3252
vdb-entry
x_refsource_VUPEN
http://www.zerodayinitiative.com/advisories/ZDI-10-291/
x_refsource_MISC
42643
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now