Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2014-3439Endpoint Protection Manager vulnerability

4 documents4 sources
Severity
6.1MEDIUMNVD
EPSS
12.4%
top 6.09%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedNov 7
Latest updateMay 14

Description

ConsoleServlet in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU5 allows remote attackers to write to arbitrary files via unspecified vectors.

CVSS vector

AV:A/AC:L/C:N/I:N/A:CExploitability: 6.5 | Impact: 6.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-q2vv-3q42-xrpx: ConsoleServlet in Symantec Endpoint Protection Manager (SEPM) 122022-05-14
CVEList
CVE-2014-3439: ConsoleServlet in Symantec Endpoint Protection Manager (SEPM) 122014-11-07

💥Exploits & PoCs

1
Exploit-DB
Symantec Endpoint Protection 12.1.4023.4080 - Multiple Vulnerabilities2014-11-06
CVE-2014-3439 — Symantec vulnerability | cvebase