peter bassill · operator
$ cve CVE-2012-2953 JSON

CVE-2012-2953 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 67.4% (pctl 99)

Patch early

A public exploit exists.

Description

The management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows remote attackers to execute arbitrary commands via crafted input to application scripts.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS67.39% — more likely to be exploited than 99% of all CVEs
WeaknessCWE-78
On CISA KEVno
Public exploityes
Published2012-07-23
Last modified2026-06-16

Affected (1)

VendorProduct
symantecweb gateway

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD