Information Disclosure in Symantec Endpoint Detection & Response
CVE-2020-12593
Key Information:
- Vendor
Symantec
- Vendor
- CVE Published:
- 18 November 2020
Badges
What is CVE-2020-12593?
The information disclosure vulnerability in Symantec Endpoint Detection & Response, prior to version 4.5, poses a risk by potentially allowing unauthorized users to access sensitive data. This issue underscores the importance of timely software updates and vigilant security practices to safeguard confidential information from exposure.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Symantec Endpoint Detection & Response (SEDR) Prior to 4.5
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V3.1
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved