Privilege Escalation Vulnerability in Symantec Endpoint Protection
CVE-2019-18372
7.8HIGH
Key Information:
- Vendor
- Symantec
- Vendor
- CVE Published:
- 15 November 2019
Summary
Symantec Endpoint Protection versions prior to 14.2 RU2 are vulnerable to a privilege escalation issue. This vulnerability allows attackers to exploit the application to gain elevated permissions, enabling access to protected system resources. Attackers could potentially leverage this security gap to execute unauthorized actions, compromising the integrity and security of critical systems managed by Symantec Endpoint Protection.
Affected Version(s)
Symantec Endpoint Protection prior to 14.2 RU2
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved