CVE-2012-0299
Symantec Web Gateway 5.0.x - Remote Code Execution via File Management Scripts
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2012-0299.
PoCs published by Metasploit, Unknown, juan vazquez, including Metasploit module exploits/linux/http/symantec_web_gateway_file_upload.
AI-analyzed exploit summary This Metasploit module exploits an arbitrary PHP file upload vulnerability in Symantec Web Gateway 5.0.2.8 by abusing the `spywall/blocked_file.php` endpoint to upload a malicious PHP file without authentication, leading to remote code execution.
Description
The file-management scripts in the management GUI in Symantec Web Gateway 5.0.x before 5.0.3 allow remote attackers to upload arbitrary code to a designated pathname, and possibly execute this code, via unspecified vectors.
Exploits (2)
This Metasploit module exploits an arbitrary PHP file upload vulnerability in Symantec Web Gateway 5.0.2.8 by abusing the `spywall/blocked_file.php` endpoint to upload a malicious PHP file without authentication, leading to remote code execution.
This Metasploit module exploits an arbitrary PHP file upload vulnerability in Symantec Web Gateway 5.0.2.8 by abusing the spywall/blocked_file.php endpoint to upload a malicious PHP file without authentication, leading to remote code execution.