CVE Database
/

CVE-2018-12237

Back to search

CVE-2018-12237

Published: Jan 24, 2019

Modified: Sep 16, 2024

PUBLISHED

Description

The Symantec Reporter CLI 10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8 is susceptible to an OS command injection vulnerability. An authenticated malicious administrator with Enable mode access can execute arbitrary OS commands with elevated system privileges.

VendorProductVersions

Symantec Corporation

Symantec Reporter

affected
10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8

References

106518
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now