Symantec Endpoint Protection Windows Agent, running an ERASER Engine prior to 119.1.7.8, may be susceptible to an Elevation of Privilege vulnerability, which may allow an attacker to delete resources that are normally protected from an application or user.
History

Wed, 30 Apr 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 30 Apr 2025 17:00:00 +0000

Type Values Removed Values Added
Description Symantec Endpoint Protection Windows Agent, running an ERASER Engine prior to 119.1.7.8, may be susceptible to an Elevation of Privilege vulnerability, which may allow an attacker to delete resources that are normally protected from an application or user.
Title Symantec Endpoint Protection Elevation of Privilege
Weaknesses CWE-367
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: symantec

Published: 2025-04-30T16:49:18.064Z

Updated: 2025-04-30T17:27:30.872Z

Reserved: 2025-04-14T15:44:01.666Z

Link: CVE-2025-3599

cve-icon Vulnrichment

Updated: 2025-04-30T17:27:23.196Z

cve-icon NVD

Status : Received

Published: 2025-04-30T17:15:50.760

Modified: 2025-04-30T17:15:50.760

Link: CVE-2025-3599

cve-icon Redhat

No data.