[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"all-banners":3,"SkipToContent_34xgpJIRRkpiT6ls6jE4NHf7VpvQCQBEwi69exi4oT0":4,"FooterNav_JsYsxvLufb1W12aeknKZ89on0MD0bNDTiB5EYxyxmU":11,"FooterSocial_u16tCafBUeGMoDrdLfTINytP2JB5msc6iB3VDUutAoU":17,"vulnerability-9268":24},[],["Island",5],{"key":6,"params":7,"result":9},"SkipToContent_34xgpJIRRkpiT6ls6jE4NHf7VpvQCQBEwi69exi4oT0",{"props":8},"{}",{"head":10},{},["Island",12],{"key":13,"params":14,"result":15},"FooterNav_JsYsxvLufb1W12aeknKZ89on0MD0bNDTiB5EYxyxmU",{"props":8},{"head":16},{},["Island",18],{"key":19,"params":20,"result":22},"FooterSocial_u16tCafBUeGMoDrdLfTINytP2JB5msc6iB3VDUutAoU",{"props":21},"{\"text-color\":\"gray\"}",{"head":23},{},{"id":25,"detectable_with":26,"vuln_details":33,"vuln_id":53,"name":54,"published":55,"updated":34},9268,{"tool":27,"engine":30},{"id":28,"name":29},1,"Network Scanner",{"id":31,"name":32},3,"OpenVAS",{"id":25,"codename":34,"description":34,"severity":34,"risk_description":35,"public_description":36,"public_recommendation":37,"recommendation":34,"references":38,"cvssv3":34,"epss_score":47,"epss_percentile":48,"cve":49,"in_cisa_catalog":52,"date":34,"software_type":34,"vendor":34,"product":34,"ptt_exploit_capabilities":34},null,"Flaw is due to an error when handling XML data within the servlet/ConsoleServlet. Successful exploitation will allow attackers to disclose potentially sensitive information, manipulate certain data, and cause a DoS (Denial of Service).","Symantec Endpoint Protection Manager is prone to XXE and SQL injection vulnerabilities.","Upgrade Symantec Endpoint Protection Manager to version 11.0.7405.1424 or 12.1.4023.4080 or later, and Symantec Protection Center Small Business Edition to version 12.1.4023.4080 or later.",[39,40,41,42,43,44,45,46],"http://secunia.com/advisories/56798","http://www.securityfocus.com/bid/65466","http://www.securityfocus.com/bid/65467","http://seclists.org/bugtraq/2014/Feb/82","http://www.exploit-db.com/exploits/31853","http://www.exploit-db.com/exploits/31917","http://packetstormsecurity.com/files/125282","http://packetstormsecurity.com/files/125366",0.86196,0.99395,[50,51],"CVE-2013-5014","CVE-2013-5015",false,"NETSCAN-OPENVAS-1.3.6.1.4.1.25623.1.0.804513","Symantec Endpoint Protection Manager XXE and SQL Injection Vulnerabilities","2018-01-02T00:00:00Z"]