peter bassill · operator
$ cve CVE-2012-0298 JSON

CVE-2012-0298 EXPLOIT

6.4
MEDIUM · CVSS 2.0 · EPSS 9.3% (pctl 95)

Patch early

A public exploit exists.

Description

The file-management scripts in the management GUI in Symantec Web Gateway 5.0.x before 5.0.3 allow remote attackers to (1) read or (2) delete arbitrary files via unspecified vectors.

Scoring

CVSS6.4 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:N/A:P
EPSS9.33% — more likely to be exploited than 95% of all CVEs
WeaknessCWE-264
On CISA KEVno
Public exploityes
Published2012-05-21
Last modified2026-06-16

Affected (1)

VendorProduct
symantecweb gateway

Public exploits

SourceTitleDate
exploit-dbsymantec Web gateway 5.0.2.8 - Multiple Vulnerabilities2012-06-27

References

→ the Explorer  ·  watch your stack  ·  NVD