CVE-2012-0299
Symantec Web Gateway <5.0.3 - RCE
Title source: llmDescription
The file-management scripts in the management GUI in Symantec Web Gateway 5.0.x before 5.0.3 allow remote attackers to upload arbitrary code to a designated pathname, and possibly execute this code, via unspecified vectors.
Exploits (2)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubywebappsphp
https://www.exploit-db.com/exploits/19038
metasploit
WORKING POC
EXCELLENT
by Unknown, juan vazquez · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/http/symantec_web_gateway_file_upload.rb
References (3)
Scores
EPSS
0.8227
EPSS Percentile
99.2%
Details
CWE
CWE-264
Status
published
Products (3)
symantec/web_gateway
5.0
symantec/web_gateway
5.0.1
symantec/web_gateway
5.0.2
Published
May 21, 2012
Tracked Since
Feb 18, 2026