Symantec Update
3093Warning Date
Severity Level
Warning Number
Target Sector
17 November, 2019
● Medium
2019-633
All
Description:
Symantec has released security update to address multiple vulnerabilities in the following products:
- Symantec Endpoint Protection Manager (SEPM) Version prior to 14.2 RU1 and prior to 14.2 RU2
- Symantec Endpoint Protection (SEP) Versions prior to 14.2 RU2 and 12.1 RU6 MP10
- Symantec Endpoint Protection Small Business Edition (SEP SBE) Versions prior to 12.1 RU6 MP10d (12.1.7510.7002)
- Symantec Mail Security for MS Exchange (SMSMSE) Versions prior to 7.5.x
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Privilege escalation.
- Password protection bypass.
- Execute arbitrary code.
Best practice and Recommendations:
The CERT team encourages users to review Symantec security advisory and apply the necessary update: https://support.symantec.com/us/en/article.SYMSA1488.html