CVE-2020-5836: High severity Symantec Endpoint Protection vulnerability
Published May 11, 2020
·Updated
Symantec Endpoint Protection, prior to 14.3, can potentially reset the ACLs on a file as a limited user while Symantec Endpoint Protection's Tamper Protection feature is disabled.
Affected Software
1 affected component
Symantec Endpoint Protection<14.3
Event History
May 11, 2020
CVE Published
via MITRE·07:23 PM
Data Sourced
via MITRE·07:23 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this Symantec Endpoint Protection vulnerability?
The vulnerability ID for this Symantec Endpoint Protection vulnerability is CVE-2020-5836.
2
What is the title of the vulnerability?
The title of the vulnerability is "Symantec Endpoint Protection prior to 14.3 can potentially reset the ACLs on a file as a limited user."
3
What is the affected software?
The affected software is Symantec Endpoint Protection prior to version 14.3.
4
What is the severity of CVE-2020-5836?
The severity of CVE-2020-5836 is high with a severity value of 7.8.
5
How can I fix the Symantec Endpoint Protection vulnerability?
To fix the Symantec Endpoint Protection vulnerability, update to version 14.3 or later.