Privilege Escalation Vulnerability in Symantec Endpoint Encryption
CVE-2019-9702

7.8HIGH

Key Information:

Vendor
Symantec
Vendor
CVE Published:
1 July 2019

Summary

Symantec Endpoint Encryption, prior to version 11.3.0, is vulnerable to a privilege escalation flaw that could potentially allow users to gain unauthorized elevated access to sensitive resources typically protected at lower access levels. This vulnerability could lead to compromised security protocols and unauthorized actions within the system, emphasizing the need for timely updates and security measures.

Affected Version(s)

Endpoint Encryption Prior to SEE 11.3.0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.