CVE-2012-0289: Symantec Endpoint Protection

High severity, CVSS 7.2. EPSS: 1.5% chance of exploitation in the next 30 days.

Buffer overflow in Symantec Endpoint Protection (SEP) 11.0.600x through 11.0.710x and Symantec Network Access Control (SNAC) 11.0.600x through 11.0.710x allows local users to gain privileges, and modify data or cause a denial of service, via a crafted script.

Affected products

  • Symantec Endpoint Protection: version 11.0.6000 only; version 11.0.6100 only; version 11.0.6200 only; version 11.0.6200.754 only; version 11.0.6300 only; version 11.0.7000 only; …
  • Symantec Network Access Control: version 11.0.6000 only; version 11.0.6100 only; version 11.0.6200 only; version 11.0.6300 only; version 11.0.7000 only; version 11.0.7100 only

Published 2012-05-23. Last modified 2026-06-16.