CVE-2017-13681: High severity symantec endpoint protection vulnerability
Symantec Endpoint Protection prior to SEP 12.1 RU6 MP9 could be susceptible to a privilege escalation vulnerability, which is a type of issue that allows a user to gain elevated access to resources that are normally protected at lower access levels. In the circumstances of this issue, the capability of exploit is limited by the need to perform multiple file and directory writes to the local filesystem and as such, is not feasible in a standard drive-by type attack.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-13681?
CVE-2017-13681 is a privilege escalation vulnerability in Symantec Endpoint Protection prior to SEP 12.1 RU6 MP9.
How can an attacker exploit CVE-2017-13681?
An attacker can exploit CVE-2017-13681 to gain elevated access to resources that are normally protected at lower access levels.
What is the severity of CVE-2017-13681?
CVE-2017-13681 has a severity rating of 7.8 (High).
Which version of Symantec Endpoint Protection is affected by CVE-2017-13681?
Symantec Endpoint Protection prior to version 12.1 RU6 MP9 is affected by CVE-2017-13681.
How can I fix CVE-2017-13681?
To fix CVE-2017-13681, update Symantec Endpoint Protection to version 12.1 RU6 MP9 or later.