CVE-2012-0299

Symantec Web Gateway 5.0.x - Remote Code Execution via File Management Scripts

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2012-0299. PoCs published by Metasploit, Unknown, juan vazquez, including Metasploit module exploits/linux/http/symantec_web_gateway_file_upload.

AI-analyzed exploit summary This Metasploit module exploits an arbitrary PHP file upload vulnerability in Symantec Web Gateway 5.0.2.8 by abusing the `spywall/blocked_file.php` endpoint to upload a malicious PHP file without authentication, leading to remote code execution.

Description

The file-management scripts in the management GUI in Symantec Web Gateway 5.0.x before 5.0.3 allow remote attackers to upload arbitrary code to a designated pathname, and possibly execute this code, via unspecified vectors.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Metasploit · rubywebappsphp
https://www.exploit-db.com/exploits/19038

This Metasploit module exploits an arbitrary PHP file upload vulnerability in Symantec Web Gateway 5.0.2.8 by abusing the `spywall/blocked_file.php` endpoint to upload a malicious PHP file without authentication, leading to remote code execution.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Symantec Web Gateway 5.0.2.8
No auth needed
Prerequisites: Network access to the target's HTTP service
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC EXCELLENT
by Unknown, juan vazquez · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/http/symantec_web_gateway_file_upload.rb

This Metasploit module exploits an arbitrary PHP file upload vulnerability in Symantec Web Gateway 5.0.2.8 by abusing the spywall/blocked_file.php endpoint to upload a malicious PHP file without authentication, leading to remote code execution.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Symantec Web Gateway 5.0.2.8
No auth needed
Prerequisites: Network access to the target's HTTP service
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/75730
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/53443

Scores

EPSS 0.6406
EPSS Percentile 99.1%

Details

CWE
CWE-264
Status published
Products (3)
symantec/web_gateway 5.0
symantec/web_gateway 5.0.1
symantec/web_gateway 5.0.2
Published May 21, 2012
Tracked Since Feb 18, 2026