Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2010-0114

EPSS 2.76% · P86
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2010-0114

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
fw_charts.php in the reporting module in the Manager (aka SEPM) component in Symantec Endpoint Protection (SEP) 11.x before 11 RU6 MP2 allows remote attackers to bypass intended restrictions on report generation, overwrite arbitrary PHP scripts, and execute arbitrary code via a crafted request.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Symantec Endpoint Protection fw_charts.php文件任意代码执行漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Symantec Endpoint Protection(SEP)是美国赛门铁克(Symantec)公司的一套防病毒软件。该软件可跨物理和虚拟系统提供安全防护功能。 Symantec Endpoint Protection (SEP) 11 RU6 MP2之前的11.x版本的Manager(又名SEPM)组件的reporting模块中的fw_charts.php文件中存在漏洞。远程攻击者可以借助特制请求绕过对报告生成的预设限制,覆盖任意PHP脚本,以及执行任意代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2010-0114

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2010-0114

登录查看更多情报信息。

Same Patch Batch · n/a · 2010-12-22 · 45 CVEs total

CVE-2010-4583Opera Turbo设计错误漏洞
CVE-2010-4586Opera默认配置错误漏洞
CVE-2010-4585Opera自动升级功能拒绝服务漏洞
CVE-2010-4587Opera设计错误漏洞
CVE-2010-4574Google Chrome Pickle::Pickle函数拒绝服务漏洞
CVE-2010-4575Google Chrome ThemeInstalledInfoBarDelegate::Observe函数拒绝服务漏洞
CVE-2010-4576Google Chrome dispatcher.cc文件空指针引用漏洞
CVE-2010-4577Google Chrome CSS越界读取漏洞
CVE-2010-4578Google Chrome拒绝服务攻击漏洞
CVE-2010-4116HP StorageWorks Storage Mirroring远程代码执行漏洞
CVE-2010-4584Opera X.509证书加密问题漏洞
CVE-2010-4582Opera权限许可和访问控制漏洞
CVE-2010-4581Opera opera_browser未明漏洞
CVE-2010-4580Opera信息泄漏漏洞
CVE-2010-4579Opera设计错误漏洞
CVE-2010-4333Pangramsoft Pointter PHP Content Management System授权问题漏洞
CVE-2010-4332Pangramsoft Pointter PHP Content Management System管理特权绕过漏洞
CVE-2010-4275Dmasoftlab Radius Manager New User Group Script任意代码执行漏洞
CVE-2010-2590SAP Crystal Reports Print ActiveX Control缓冲区溢出漏洞
CVE-2010-1804Apple多个产品DHCP回复拒绝服务漏洞

Showing top 20 of 45 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2010-0114

No comments yet


Leave a comment