peter bassill · operator
$ cve CVE-2012-0289 JSON

CVE-2012-0289 EXPLOIT

7.2
HIGH · CVSS 2.0 · EPSS 1.5% (pctl 73)

Patch early

A public exploit exists.

Description

Buffer overflow in Symantec Endpoint Protection (SEP) 11.0.600x through 11.0.710x and Symantec Network Access Control (SNAC) 11.0.600x through 11.0.710x allows local users to gain privileges, and modify data or cause a denial of service, via a crafted script.

Scoring

CVSS7.2 (HIGH, v2.0)
VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS1.46% — more likely to be exploited than 73% of all CVEs
WeaknessCWE-119
On CISA KEVno
Public exploityes
Published2012-05-23
Last modified2026-06-16

Affected (2)

VendorProduct
symantecendpoint protection
symantecnetwork access control

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD