Lucene search

K
nvd[email protected]NVD:CVE-2015-1492
HistoryAug 01, 2015 - 1:59 a.m.

CVE-2015-1492

2015-08-0101:59:09
CWE-20
web.nvd.nist.gov
5

CVSS2

8.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:C/I:C/A:C

AI Score

6.1

Confidence

Low

EPSS

0

Percentile

9.5%

Untrusted search path vulnerability in the client in Symantec Endpoint Protection 12.1 before 12.1-RU6-MP1 allows local users to gain privileges via a Trojan horse DLL in a client install package.

Affected configurations

Nvd
Node
symantecendpoint_protection_managerMatch12.1.0
VendorProductVersionCPE
symantecendpoint_protection_manager12.1.0cpe:2.3:a:symantec:endpoint_protection_manager:12.1.0:*:*:*:*:*:*:*

CVSS2

8.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:C/I:C/A:C

AI Score

6.1

Confidence

Low

EPSS

0

Percentile

9.5%