CVE-2020-5837: High severity Symantec Endpoint Protection vulnerability
Symantec Endpoint Protection, prior to 14.3, may not respect file permissions when writing to log files that are replaced by symbolic links, which can lead to a potential elevation of privilege.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-5837?
CVE-2020-5837 is a vulnerability in Symantec Endpoint Protection prior to 14.3 that may not respect file permissions when writing to log files that are replaced by symbolic links, leading to a potential elevation of privilege.
How does CVE-2020-5837 impact Symantec Endpoint Protection?
CVE-2020-5837 can lead to a potential elevation of privilege in Symantec Endpoint Protection prior to version 14.3.
What is the severity of CVE-2020-5837?
CVE-2020-5837 has a severity rating of 7.8 (High).
How can I fix CVE-2020-5837 in Symantec Endpoint Protection?
To fix CVE-2020-5837 in Symantec Endpoint Protection, you should update to version 14.3 or later.
Where can I find more information about CVE-2020-5837?
You can find more information about CVE-2020-5837 in the Symantec Endpoint Protection Security Advisory at https://support.broadcom.com/security-advisory/security-advisory-detail.html?notificationId=SYMSA1762