CVE-2015-1487

Symantec Endpoint Protection Manager <12.1-RU6-MP1 - Privilege Esca...

Title source: llm

Description

The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to write to arbitrary files, and consequently obtain administrator privileges, via a crafted filename.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows_x86
https://www.exploit-db.com/exploits/37812

Scores

EPSS 0.5120
EPSS Percentile 97.9%

Details

CWE
CWE-20
Status published
Products (1)
symantec/endpoint_protection_manager 12.1.0
Published Aug 01, 2015
Tracked Since Feb 18, 2026