Authentication Bypass in Symantec Critical System Protection
CVE-2019-18374
9.8CRITICAL
Key Information:
- Vendor
Symantec
- Vendor
- CVE Published:
- 25 November 2019
What is CVE-2019-18374?
Symantec Critical System Protection (CSP) versions 8.0, 8.0 HF1, and 8.0 MP1 are exposed to an authentication bypass vulnerability, which may enable threat actors to bypass security measures designed to protect sensitive systems. This could lead to unauthorized access, allowing attackers to exploit other vulnerabilities or gain control over the affected system without the need for valid credentials. Organizations using these versions should assess their security posture and apply necessary updates or configurations to mitigate potential risks.
Affected Version(s)
Critical System Protection (CSP) 8.0
Critical System Protection (CSP) 8.0 HF1
Critical System Protection (CSP) 8.0 MP1