fw_charts.php in the reporting module in the Manager (aka...
High severity
Unreviewed
Published
May 2, 2022
to the GitHub Advisory Database
•
Updated Apr 11, 2025
Description
Published by the National Vulnerability Database
Dec 22, 2010
Published to the GitHub Advisory Database
May 2, 2022
Last updated
Apr 11, 2025
fw_charts.php in the reporting module in the Manager (aka SEPM) component in Symantec Endpoint Protection (SEP) 11.x before 11 RU6 MP2 allows remote attackers to bypass intended restrictions on report generation, overwrite arbitrary PHP scripts, and execute arbitrary code via a crafted request.
References