9
CVSSv2

CVE-2014-7288

Published: 01/02/2015 Updated: 08/09/2017
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 905
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

Symantec PGP Universal Server and Encryption Management Server prior to 3.3.2 MP7 allow remote authenticated administrators to execute arbitrary shell commands via a crafted command line in a database-backup restore action.

Vulnerable Product Search on Vulmon Subscribe to Product

symantec encryption management server

symantec pgp universal server

Exploits

Vantage Point Security Advisory 2014-007 ======================================== Title: Symantec Encryption Management Server - Remote Command Injection ID: VP-2014-007 Vendor: Symantec Affected Product: Symantec Encryption Gateway Affected Versions: < 320 MP6 Product Website: wwwsymanteccom/en/sg/gateway-email-encryption/ Author: P ...
Symantec Encryption Gateway suffers from a remote command injection vulnerability Versions prior to 320 MP6 are affected ...