Symantec Endpoint Protection prior to SEP 12.1 RU6 MP9 could be susceptible to a privilege escalation vulnerability, which is a type of issue that allows a user to gain elevated access to resources that are normally protected at lower access levels. In the circumstances of this issue, the capability of exploit is limited by the need to perform multiple file and directory writes to the local filesystem and as such, is not feasible in a standard drive-by type attack.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/101504 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id/1039775 | Third Party Advisory VDB Entry |
https://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20171106_00 | Issue Tracking Third Party Advisory |
http://www.securityfocus.com/bid/101504 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id/1039775 | Third Party Advisory VDB Entry |
https://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20171106_00 | Issue Tracking Third Party Advisory |
Configurations
History
21 Nov 2024, 03:11
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/101504 - Third Party Advisory, VDB Entry | |
References | () http://www.securitytracker.com/id/1039775 - Third Party Advisory, VDB Entry | |
References | () https://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20171106_00 - Issue Tracking, Third Party Advisory |
Information
Published : 2017-11-06 23:29
Updated : 2024-11-21 03:11
NVD link : CVE-2017-13681
Mitre link : CVE-2017-13681
CVE.ORG link : CVE-2017-13681
JSON object : View
Products Affected
symantec
- endpoint_protection
CWE