Lucene search

K
cveMitreCVE-2012-0289
HistoryMay 23, 2012 - 9:55 p.m.

CVE-2012-0289

2012-05-2321:55:01
CWE-119
mitre
web.nvd.nist.gov
28
cve-2012-0289
symantec endpoint protection
symantec network access control
buffer overflow
privilege escalation
denial of service

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

Low

EPSS

0.004

Percentile

73.3%

Buffer overflow in Symantec Endpoint Protection (SEP) 11.0.600x through 11.0.710x and Symantec Network Access Control (SNAC) 11.0.600x through 11.0.710x allows local users to gain privileges, and modify data or cause a denial of service, via a crafted script.

Affected configurations

Nvd
Node
symantecendpoint_protectionMatch11.0.6000
OR
symantecendpoint_protectionMatch11.0.6100
OR
symantecendpoint_protectionMatch11.0.6200
OR
symantecendpoint_protectionMatch11.0.6200.754
OR
symantecendpoint_protectionMatch11.0.6300
OR
symantecendpoint_protectionMatch11.0.7000
OR
symantecendpoint_protectionMatch11.0.7100
Node
symantecnetwork_access_controlMatch11.0.6000
OR
symantecnetwork_access_controlMatch11.0.6100
OR
symantecnetwork_access_controlMatch11.0.6200
OR
symantecnetwork_access_controlMatch11.0.6300
OR
symantecnetwork_access_controlMatch11.0.7000
OR
symantecnetwork_access_controlMatch11.0.7100
VendorProductVersionCPE
symantecendpoint_protection11.0.6000cpe:2.3:a:symantec:endpoint_protection:11.0.6000:*:*:*:*:*:*:*
symantecendpoint_protection11.0.6100cpe:2.3:a:symantec:endpoint_protection:11.0.6100:*:*:*:*:*:*:*
symantecendpoint_protection11.0.6200cpe:2.3:a:symantec:endpoint_protection:11.0.6200:*:*:*:*:*:*:*
symantecendpoint_protection11.0.6200.754cpe:2.3:a:symantec:endpoint_protection:11.0.6200.754:*:*:*:*:*:*:*
symantecendpoint_protection11.0.6300cpe:2.3:a:symantec:endpoint_protection:11.0.6300:*:*:*:*:*:*:*
symantecendpoint_protection11.0.7000cpe:2.3:a:symantec:endpoint_protection:11.0.7000:*:*:*:*:*:*:*
symantecendpoint_protection11.0.7100cpe:2.3:a:symantec:endpoint_protection:11.0.7100:*:*:*:*:*:*:*
symantecnetwork_access_control11.0.6000cpe:2.3:a:symantec:network_access_control:11.0.6000:*:*:*:*:*:*:*
symantecnetwork_access_control11.0.6100cpe:2.3:a:symantec:network_access_control:11.0.6100:*:*:*:*:*:*:*
symantecnetwork_access_control11.0.6200cpe:2.3:a:symantec:network_access_control:11.0.6200:*:*:*:*:*:*:*
Rows per page:
1-10 of 131

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

Low

EPSS

0.004

Percentile

73.3%