Lucene search

K
nvd[email protected]NVD:CVE-2013-5011
HistoryJan 10, 2014 - 4:47 p.m.

CVE-2013-5011

2014-01-1016:47:05
CWE-22
web.nvd.nist.gov
4

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.2

Confidence

Low

EPSS

0

Percentile

9.5%

Unquoted Windows search path vulnerability in the client in Symantec Endpoint Protection (SEP) 11.x before 11.0.7.4 and 12.x before 12.1.2 RU2 and Endpoint Protection Small Business Edition 12.x before 12.1.2 RU2 allows local users to gain privileges via a crafted program in the %SYSTEMDRIVE% directory.

Affected configurations

Nvd
Node
symantecendpoint_protectionRange11.0.7.3
OR
symantecendpoint_protectionMatch11.0
OR
symantecendpoint_protectionMatch11.0ru5
OR
symantecendpoint_protectionMatch11.0ru6
OR
symantecendpoint_protectionMatch11.0ru6a
OR
symantecendpoint_protectionMatch11.0ru6mp1
OR
symantecendpoint_protectionMatch11.0ru6mp2
OR
symantecendpoint_protectionMatch11.0.1
OR
symantecendpoint_protectionMatch11.0.1mp1
OR
symantecendpoint_protectionMatch11.0.1mp2
OR
symantecendpoint_protectionMatch11.0.2
OR
symantecendpoint_protectionMatch11.0.2mp1
OR
symantecendpoint_protectionMatch11.0.2mp2
OR
symantecendpoint_protectionMatch11.0.4
OR
symantecendpoint_protectionMatch11.0.4mp1a
OR
symantecendpoint_protectionMatch11.0.4mp2
OR
symantecendpoint_protectionMatch11.0.3001
OR
symantecendpoint_protectionMatch11.0.6000
OR
symantecendpoint_protectionMatch11.0.6100
OR
symantecendpoint_protectionMatch11.0.6200
OR
symantecendpoint_protectionMatch11.0.6200.754
OR
symantecendpoint_protectionMatch11.0.6300
OR
symantecendpoint_protectionMatch11.0.7000
OR
symantecendpoint_protectionMatch11.0.7100
VendorProductVersionCPE
symantecendpoint_protection*cpe:2.3:a:symantec:endpoint_protection:*:*:*:*:*:*:*:*
symantecendpoint_protection11.0cpe:2.3:a:symantec:endpoint_protection:11.0:*:*:*:*:*:*:*
symantecendpoint_protection11.0cpe:2.3:a:symantec:endpoint_protection:11.0:ru5:*:*:*:*:*:*
symantecendpoint_protection11.0cpe:2.3:a:symantec:endpoint_protection:11.0:ru6:*:*:*:*:*:*
symantecendpoint_protection11.0cpe:2.3:a:symantec:endpoint_protection:11.0:ru6a:*:*:*:*:*:*
symantecendpoint_protection11.0cpe:2.3:a:symantec:endpoint_protection:11.0:ru6mp1:*:*:*:*:*:*
symantecendpoint_protection11.0cpe:2.3:a:symantec:endpoint_protection:11.0:ru6mp2:*:*:*:*:*:*
symantecendpoint_protection11.0.1cpe:2.3:a:symantec:endpoint_protection:11.0.1:*:*:*:*:*:*:*
symantecendpoint_protection11.0.1cpe:2.3:a:symantec:endpoint_protection:11.0.1:mp1:*:*:*:*:*:*
symantecendpoint_protection11.0.1cpe:2.3:a:symantec:endpoint_protection:11.0.1:mp2:*:*:*:*:*:*
Rows per page:
1-10 of 241

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.2

Confidence

Low

EPSS

0

Percentile

9.5%

Related for NVD:CVE-2013-5011