4.6
CVSSv2

CVE-2019-12750

Published: 31/07/2019 Updated: 24/08/2020
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Symantec Endpoint Protection, before 14.2 RU1 & 12.1 RU6 MP10 and Symantec Endpoint Protection Small Business Edition, before 12.1 RU6 MP10c (12.1.7491.7002), may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

symantec endpoint protection 11.0

symantec endpoint protection 12.1

symantec endpoint protection 14.0.0

symantec endpoint protection 14.0.1

symantec endpoint protection 14.2

symantec endpoint protection 12.0

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> Symantec Endoint Security LPE CVE-2019-12750 <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: Kyriakos Ec ...
<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> CVE-2019-12750 - Exploitation Write-ups <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: Kyriakos Economou ...

Github Repositories

sploit

Symantec Local Privilege Escalation - CVE-2019-12750 Based on the excellent writeup by Kyriakos Economou: labsnettitudecom/blog/cve-2019-12750-symantec-endpoint-protection-local-privilege-escalation-part-1/ Only x64 and older Windows versions are supported for now