CVE-2012-0297
Estado: ModificadaAlta (10)—💥 Exploit
The management GUI in Symantec Web Gateway 5.0.x before 5.0.3 does not properly restrict access to application scripts, which allows remote attackers to execute arbitrary code by (1) injecting crafted data or (2) including crafted data.
CVSS
- Versión: 2.0
- Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C
- Puntuación base: 10
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 73%
- Percentil entre todas las CVEs puntuadas: 99
- Fecha de la puntuación: 7/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
💥 Exploits públicos
Hay código de explotación o plantillas de detección públicos. No es lo mismo que explotación activa confirmada (KEV), pero aumenta el riesgo: parchee con prioridad.
- Módulo de Metasploit (exploit fiable y al alcance de cualquiera) · Symantec Web Gateway 5.0.2.8 ipchange.php Command Injection
- Módulo de Metasploit (exploit fiable y al alcance de cualquiera) · Symantec Web Gateway 5.0.2.8 relfile File Inclusion Vulnerability
- Publicado en Exploit-DB · symantec Web gateway 5.0.2.8 - Multiple Vulnerabilities (27/6/2012)
- Publicado en Exploit-DB · Symantec Web Gateway 5.0.2.8 - 'ipchange.php' Command Injection (Metasploit) (12/6/2012)
- Publicado en Exploit-DB · Symantec Web Gateway 5.0.2.8 - Command Execution (Metasploit) (28/5/2012)
- Publicado en Exploit-DB · Symantec Web Gateway 5.0.2 - Local/Remote File Inclusion / Remote Code Execution (26/5/2012)
Tecnologías afectadas (1)
CWE
- CWE-264
Referencias
- http://www.securityfocus.com/bid/53444
- http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2012&suid=20120517_00
- https://exchange.xforce.ibmcloud.com/vulnerabilities/75731
- http://www.securityfocus.com/bid/53444
- http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2012&suid=20120517_00
- https://exchange.xforce.ibmcloud.com/vulnerabilities/75731
JSON original (NVD)
Mostrar
{
"id": "CVE-2012-0297",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 10,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"authentication": "NONE",
"integrityImpact": "COMPLETE",
"accessComplexity": "LOW",
"availabilityImpact": "COMPLETE",
"confidentialityImpact": "COMPLETE"
},
"acInsufInfo": false,
"impactScore": 10,
"baseSeverity": "HIGH",
"obtainAllPrivilege": false,
"exploitabilityScore": 10,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2012-05-21T20:55:17.727",
"references": [
{
"url": "http://www.securityfocus.com/bid/53444",
"source": "cve@mitre.org"
},
{
"url": "http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2012&suid=20120517_00",
"tags": [
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/75731",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/53444",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2012&suid=20120517_00",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/75731",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-264"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "The management GUI in Symantec Web Gateway 5.0.x before 5.0.3 does not properly restrict access to application scripts, which allows remote attackers to execute arbitrary code by (1) injecting crafted data or (2) including crafted data."
},
{
"lang": "es",
"value": "La interfaz de gestión en Symantec Web Gateway v5.0.x anteriores a v5.0.3 no restringe adecuadamente el acceso a los scripts de aplicaciones, lo que permite a atacantes remotos ejecutar código de su elección mediante (1) inyección de datos manipulados o (2) inclusión de datos manipulados."
}
],
"lastModified": "2026-06-16T23:37:03.940",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:symantec:web_gateway:5.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4F5B7857-75D5-4F77-81BF-7B55F743FD5F"
},
{
"criteria": "cpe:2.3:a:symantec:web_gateway:5.0.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4525DE38-3B1F-490C-A772-BA0456FB6126"
},
{
"criteria": "cpe:2.3:a:symantec:web_gateway:5.0.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3956706B-44B9-40BC-9AAB-78A9583A2858"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}