High severity7.2NVD Advisory· Published Jan 24, 2019· Updated Jun 17, 2026
CVE-2018-12237
CVE-2018-12237
Description
The Symantec Reporter CLI 10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8 is susceptible to an OS command injection vulnerability. An authenticated malicious administrator with Enable mode access can execute arbitrary OS commands with elevated system privileges.
Affected products
3- Range: <10.1.5.6, <10.2.1.8
- Symantec Corporation/Symantec Reporterv5Range: 10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8
Patches
Vulnerability mechanics
References
2- www.securityfocus.com/bid/106518nvdThird Party AdvisoryVDB Entry
- support.symantec.com/en_US/article.SYMSA1465.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.