CVE-2022-25623
Severity:
HIGH
Type:
CWE-269
Improper Privilege Management
Publication date:
04/03/2022
Last modified:
11/03/2022
Description
The Symantec Management Agent is susceptible to a privilege escalation vulnerability. A low privilege local account can be elevated to the SYSTEM level through registry manipulations.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Base Score 2.0
7.20
Severity 2.0
High
Vulnerable products and versions
- cpe:2.3:a:symantec:management_agent:8.5:*:*:*:*:*:*:*
- cpe:2.3:a:symantec:management_agent:8.6:*:*:*:*:*:*:*
To consult the complete list of products and versions see this page