Local Privilege Escalation in Symantec Endpoint Encryption Service
CVE-2015-8156
7.8HIGH
What is CVE-2015-8156?
The vulnerability in Symantec Endpoint Encryption's EEDService allows local users to escalate privileges by placing a Trojan horse executable file in the %SYSTEMDRIVE% directory. This occurs due to the unquoted search path, which may lead to the execution of malicious executables with higher privileges, compromising system security.