The Manager service in the management console in Symantec Endpoint Protection (SEP) 12.1 before 12.1 RU1-MP1 allows remote attackers to conduct file-insertion attacks and execute arbitrary code by leveraging exploitation of CVE-2012-0294.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Endpoint_protection | — | Upgrade to SEP 12.1 RU1 MP1 or later. | Apr 27, 2017 | May 23, 2012 |
| Symantec_endpoint_protection | — | Upgrade to the latest version of Symantec Endpoint Protection | May 13, 2026 | May 23, 2012 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub