Symantec

Endpoint Protection Manager

41 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.35%
  • Veröffentlicht 01.08.2015 01:59:07
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Directory traversal vulnerability in the management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to read arbitrary files via a relative pathname in a client installation package.

  • EPSS 60.77%
  • Veröffentlicht 01.08.2015 01:59:06
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to gain privileges via unspecified vectors.

  • EPSS 0.49%
  • Veröffentlicht 01.08.2015 01:59:05
  • Zuletzt bearbeitet 06.05.2026 22:30:45

An unspecified action handler in the management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to read arbitrary files via unknown vectors.

  • EPSS 51.2%
  • Veröffentlicht 01.08.2015 01:59:04
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to write to arbitrary files, and consequently obtain administrator privileges, via a crafted filename.

  • EPSS 78.5%
  • Veröffentlicht 01.08.2015 01:59:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote attackers to bypass authentication via a crafted password-reset action that triggers a new administrative session.

Exploit
  • EPSS 9.86%
  • Veröffentlicht 07.11.2014 11:55:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

ConsoleServlet in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU5 allows remote attackers to write to arbitrary files via unspecified vectors.

Exploit
  • EPSS 13.74%
  • Veröffentlicht 07.11.2014 11:55:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Multiple cross-site scripting (XSS) vulnerabilities in console interface scripts in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU5 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Exploit
  • EPSS 17.68%
  • Veröffentlicht 07.11.2014 11:55:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU5 allows remote attackers to read arbitrary files or send TCP requests to intranet servers via XML data containing an external entity declaration in conjunction with ...

  • EPSS 64.54%
  • Veröffentlicht 14.02.2014 13:10:30
  • Zuletzt bearbeitet 29.04.2026 01:13:23

SQL injection vulnerability in the management console in Symantec Endpoint Protection Manager (SEPM) 11.0 before 11.0.7405.1424 and 12.1 before 12.1.4023.4080, and Symantec Protection Center Small Business Edition 12.x before 12.1.4023.4080, allows r...

  • EPSS 86.2%
  • Veröffentlicht 14.02.2014 13:10:27
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The management console in Symantec Endpoint Protection Manager (SEPM) 11.0 before 11.0.7405.1424 and 12.1 before 12.1.4023.4080, and Symantec Protection Center Small Business Edition 12.x before 12.1.4023.4080, allows remote attackers to read arbitra...