CVE-2013-1612
Summary
| CVE | CVE-2013-1612 |
|---|---|
| State | PUBLISHED |
| Assigner | symantec |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2013-06-20 03:17:30 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | Buffer overflow in secars.dll in the management console in Symantec Endpoint Protection Manager (SEPM) 12.1.x before 12.1.3, and Symantec Endpoint Protection Center (SPC) Small Business Edition 12.0.x, allows remote attackers to execute arbitrary code via unspecified vectors. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
AdjacentAccess Complexity
MediumAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:A/AC:M/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Symantec | Endpoint Protection Center | 12.0.0 | - | small_business | All |
| Application | Symantec | Endpoint Protection Center | 12.0.1 | - | small_business | All |
| Application | Symantec | Endpoint Protection Manager | 12.1.0 | All | All | All |
| Application | Symantec | Endpoint Protection Manager | 12.1.1 | All | All | All |
| Application | Symantec | Endpoint Protection Manager | 12.1.2 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Symantec Endpoint Protection Manager CVE-2013-1612 Remote Buffer Overflow Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| Security Advisories Relating to Symantec Products - Symantec Endpoint Protection Manager/Protection Center 12.x Buffer Overflow - 2013-06-18T11:21:40 PDT | Symantec | af854a3a-2127-422b-91ae-364da2661108 | www.symantec.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.