Out of Bounds Vulnerability in Symantec Endpoint Protection Manager
CVE-2020-5828

3.3LOW

Key Information:

Vendor
Symantec
Vendor
CVE Published:
11 February 2020

Summary

An out of bounds vulnerability exists in Symantec Endpoint Protection Manager prior to version 14.2 RU2 MP1. This issue allows the application to access memory locations outside the allocated bounds, potentially leading to unauthorized data exposure or application instability. It poses risks to users by potentially enabling an attacker to manipulate the memory context, thereby affecting the system's integrity.

Affected Version(s)

Symantec Endpoint Protection Manager (SEPM) Prior to 14.2 RU2 MP1

References

CVSS V3.1

Score:
3.3
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.