Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Untrusted search path vulnerability in the client in Symantec Endpoint Protection (SEP) 12.1 before 12.1-RU6-MP3 allows local users to gain privileges via a Trojan horse DLL in a client install package. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-1492.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Symantec Endpoint Protection 不可信搜索路径漏洞
Vulnerability Description
Symantec Endpoint Protection(SEP)是美国赛门铁克(Symantec)公司的一套防病毒软件。该软件可跨物理和虚拟系统提供安全防护功能。 SEP 12.1-RU6-MP2及之前版本的客户端中存在不可信搜索路径漏洞。本地攻击者可借助客户端安装包中的Trojan horse DLL文件利用该漏洞获取权限。(注:该漏洞源于CNNVD-201507-840补丁的不完全修复)
CVSS Information
N/A
Vulnerability Type
N/A