Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2020-5821

Quick assessment

Affected
n/a Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE)
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Symantec Endpoint Protection(SEP)和Symantec Endpoint Protection Small Business Edition(SEP SBE)都是美国赛门铁克(Symantec)公司的产品。Symantec Endpoint Protection是一套防病毒软件。该软件可跨物理和虚拟系统提供安全防护功能。Symantec Endpoint Protection Small Business Edition是一套适用于中小企业的端点安全防护软件。 Symante

AI Predicted 7.5 Difficulty: Moderate EPSS 0.43% · P36

Possible ATT&CK Techniques 1 AI

T1055 · Process Injection
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2020-5821

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 MP1 and prior to 14.2.5569.2100 respectively, may be susceptible to a DLL injection vulnerability, which is a type of issue whereby an individual attempts to execute their own code in place of legitimate code as a means to perform an exploit.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Symantec Endpoint Protection和Small Business Edition 注入漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Symantec Endpoint Protection(SEP)和Symantec Endpoint Protection Small Business Edition(SEP SBE)都是美国赛门铁克(Symantec)公司的产品。Symantec Endpoint Protection是一套防病毒软件。该软件可跨物理和虚拟系统提供安全防护功能。Symantec Endpoint Protection Small Business Edition是一套适用于中小企业的端点安全防护软件。 Symante
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE) Prior to 14.2 RU2 MP1 and prior to 14.2.5569.2100 respectively -

II. Public POCs for CVE-2020-5821

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2020-5821

登录查看更多情报信息。

Other References for CVE-2020-5821 (1)

Same Patch Batch · n/a · 2020-02-11 · 55 CVEs total

CVE-2014-3826 MyBB 跨站脚本漏洞
CVE-2020-8891 MISP 安全漏洞
CVE-2020-6063 Accusoft ImageGear 缓冲区错误漏洞
CVE-2020-1942 Apache NiFi 信息泄露漏洞
CVE-2020-6066 Accusoft ImageGear 缓冲区错误漏洞
CVE-2020-6067 Accusoft ImageGear 缓冲区错误漏洞
CVE-2020-8892 MISP 安全漏洞
CVE-2013-2213 KDE Paste Applet 加密问题漏洞
CVE-2012-2517 PrestaShop 跨站脚本漏洞
CVE-2013-2120 KDE Paste Applet 授权问题漏洞
CVE-2012-2452 PragmaMX多个跨站脚本漏洞
CVE-2013-5582 Ammyy Admin 授权问题漏洞
CVE-2014-3827 MyBB 跨站脚本漏洞
CVE-2009-4067 Linux kernel 缓冲区错误漏洞
CVE-2014-9753 ATutor 授权问题漏洞
CVE-2013-3684 WordPress NextGEN Gallery 代码问题漏洞
CVE-2013-5988 WordPress All in One SEO Pack 跨站脚本漏洞
CVE-2013-1760 The Bug Genie 跨站脚本漏洞
CVE-2013-1607 Ruby PDFKit 输入验证错误漏洞
CVE-2020-8429 Kinetica Admin web application 输入验证错误漏洞

Showing top 20 of 55 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2020-5821

No comments yet


Leave a comment