CVE-2014-3440 in Broadcom and Symantec Products
Published on January 21, 2015
The Agent Control Interface in the management server in Symantec Critical System Protection (SCSP) 5.2.9 before MP6 and Symantec Data Center Security: Server Advanced (SDCS:SA) 6.0.x before 6.0 MP1 allows remote authenticated users to execute arbitrary commands by leveraging client-system access to upload a log file.
Products Associated with CVE-2014-3440
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2014-3440 are published in these products:
Exploit Probability
EPSS
0.84%
Percentile
74.42%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.