CVE-2015-1487
Symantec Endpoint Protection Manager <12.1-RU6-MP1 - Privilege Esca...
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2015-1487. PoCs published by Metasploit.
AI-analyzed exploit summary This Metasploit module exploits CVE-2015-1489 (alongside CVE-2015-1486 and CVE-2015-1487) to achieve remote code execution on Symantec Endpoint Protection Manager by chaining an authentication bypass, directory traversal, and privilege escalation to execute a payload as NT AUTHORITY\SYSTEM.
Description
The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to write to arbitrary files, and consequently obtain administrator privileges, via a crafted filename.
Exploits (1)
This Metasploit module exploits CVE-2015-1489 (alongside CVE-2015-1486 and CVE-2015-1487) to achieve remote code execution on Symantec Endpoint Protection Manager by chaining an authentication bypass, directory traversal, and privilege escalation to execute a payload as NT AUTHORITY\SYSTEM.