Lucene search

K
cvelistSymantecCVELIST:CVE-2018-12237
HistoryJan 24, 2019 - 9:00 p.m.

CVE-2018-12237

2019-01-2421:00:00
symantec
www.cve.org
4

AI Score

7.5

Confidence

High

EPSS

0.001

Percentile

41.0%

The Symantec Reporter CLI 10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8 is susceptible to an OS command injection vulnerability. An authenticated malicious administrator with Enable mode access can execute arbitrary OS commands with elevated system privileges.

CNA Affected

[
  {
    "product": "Symantec Reporter",
    "vendor": "Symantec Corporation",
    "versions": [
      {
        "status": "affected",
        "version": "10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8"
      }
    ]
  }
]

AI Score

7.5

Confidence

High

EPSS

0.001

Percentile

41.0%

Related for CVELIST:CVE-2018-12237