漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Component Object Model (COM) Hijacking in Symantec Endpoint Protection Windows Client
Vulnerability Description
Symantec Endpoint Protection, prior to 14.3 RU10 Patch 1, RU9 Patch 2, and RU8 Patch 3, may be susceptible to a COM Hijacking vulnerability, which is a type of issue whereby an attacker attempts to establish persistence and evade detection by hijacking COM references in the Windows Registry.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Vulnerability Type
对搜索路径元素未加控制
Vulnerability Title
Broadcom Symantec Endpoint Protection Windows Agent 安全漏洞
Vulnerability Description
Broadcom Symantec Endpoint Protection Windows Agent是美国博通(Broadcom)公司的一个终端安全解决方案的客户端组件。 Broadcom Symantec Endpoint Protection Windows Agent存在安全漏洞,该漏洞源于COM劫持问题,可能导致攻击者通过劫持Windows注册表中的COM引用来建立持久性并逃避检测。
CVSS Information
N/A
Vulnerability Type
N/A