Symantec Endpoint Protection CVE-2018-5237 Local Privilege Escalation Vulnerability
BID:104199
CVE-2018-5237 |Info
Symantec Endpoint Protection CVE-2018-5237 Local Privilege Escalation Vulnerability
| Bugtraq ID: | 104199 |
| Class: | Design Error |
| CVE: |
CVE-2018-5237 |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 20 2018 12:00AM |
| Updated: | Jun 20 2018 12:00AM |
| Credit: | Clément Lavoillotte @clavoillotte |
| Vulnerable: |
Symantec Endpoint Protection 11.0 RU6-MP3(11.0.6300) 0 Symantec Endpoint Protection 11.0 RU6-MP2(11.0.6200) 0 Symantec Endpoint Protection 11.0 RU6-MP1(11.0.6100) 0 Symantec Endpoint Protection 11 RU7 MP1 0 Symantec Endpoint Protection 12.1.5 Symantec Endpoint Protection 12.1.3 Symantec Endpoint Protection 12.1.2 RU2 Symantec Endpoint Protection 12.1.2 Symantec Endpoint Protection 12.1.1 Symantec Endpoint Protection 11.0.4010 .26 (MR4-MP1a) Symantec Endpoint Protection 11.0.4010 .19 (MR4-MP1) Symantec Endpoint Protection 11.0.4000 .2295 (MR4) Symantec Endpoint Protection 11.0.4000 .2295 Symantec Endpoint Protection 11.0.4000 Symantec Endpoint Protection 11.0.3001 .2224 (MR3) Symantec Endpoint Protection 11.0.2020 .56 (MR2-MP2) Symantec Endpoint Protection 11.0.2010 .25 (MR2-MP1) Symantec Endpoint Protection 11.0.2001 .10 (MR2-PP1) Symantec Endpoint Protection 11.0.2000 .1567 (MR2) Symantec Endpoint Protection 11.0.1005 .1428 (MR1-PP5) Symantec Endpoint Protection 11.0.1002 .1378 (MR1-PP2) Symantec Endpoint Protection 11.0.1000 .1375 (MR1) Symantec Endpoint Protection 11.0.781 .1287 (STM-PP1) Symantec Endpoint Protection 11.0.780 .1109 (STM) Symantec Endpoint Protection 11.0.7 Symantec Endpoint Protection 11.0.4 Symantec Endpoint Protection 11.0.2 Symantec Endpoint Protection 11.0.1 Symantec Endpoint Protection 12.1.4100.4126 Symantec Endpoint Protection 12.1.4 Symantec Endpoint Protection 12.1.2015.2015 Symantec Endpoint Protection 12.1.2.1 Symantec Endpoint Protection 12.1.1000 Symantec Endpoint Protection 12.1.1.1 Symantec Endpoint Protection 12.1 RU4 MP1b Symantec Endpoint Protection 12.1 RU3 Symantec Endpoint Protection 12.1 RU2 Symantec Endpoint Protection 12.1 RU1-MP1 Symantec Endpoint Protection 12.1 RU1 Symantec Endpoint Protection 12.1 MP1 Symantec Endpoint Protection 12.1 - Small Busines Symantec Endpoint Protection 12.1 Symantec Endpoint Protection 12.0 Symantec Endpoint Protection 11.0.7100 Symantec Endpoint Protection 11.0.7000 Symantec Endpoint Protection 11.0.7.4 Symantec Endpoint Protection 11.0.7.3 Symantec Endpoint Protection 11.0.7.2 Symantec Endpoint Protection 11.0.7.1 Symantec Endpoint Protection 11.0.6300 Symantec Endpoint Protection 11.0.6200.754 Symantec Endpoint Protection 11.0.6200 Symantec Endpoint Protection 11.0.6100 Symantec Endpoint Protection 11.0.6000 Symantec Endpoint Protection 11.0.4202.75 Symantec Endpoint Protection 11.0.4 Mp2 Symantec Endpoint Protection 11.0.4 Mp1a Symantec Endpoint Protection 11.0.3001 Symantec Endpoint Protection 11.0.2 Mp2 Symantec Endpoint Protection 11.0.2 Mp1 Symantec Endpoint Protection 11.0.1 Mp2 Symantec Endpoint Protection 11.0.1 Mp1 Symantec Endpoint Protection 11.0 RU7-MP3 Symantec Endpoint Protection 11.0 RU7 MP2 Symantec Endpoint Protection 11.0 RU7 MP1 Symantec Endpoint Protection 11.0 Ru6mp2 Symantec Endpoint Protection 11.0 Ru6mp1 Symantec Endpoint Protection 11.0 Ru6a Symantec Endpoint Protection 11.0 RU6-MP3(11.0.63 Symantec Endpoint Protection 11.0 RU6-MP2(11.0.62 Symantec Endpoint Protection 11.0 RU6-MP1(11.0.61 Symantec Endpoint Protection 11.0 RU6(11.0.600x) Symantec Endpoint Protection 11.0 RU6 MP4 Symantec Endpoint Protection 11.0 RU6 MP3 Symantec Endpoint Protection 11.0 RU6 MP2 Symantec Endpoint Protection 11.0 RU6 MP1 Symantec Endpoint Protection 11.0 Ru6 Symantec Endpoint Protection 11.0 RU5 Symantec Endpoint Protection 11.0 RU4 Symantec Endpoint Protection 11.0 MR3 Symantec Endpoint Protection 11.0 MR2 Symantec Endpoint Protection 11.0 MR1 Symantec Endpoint Protection 11.0 Symantec Endpoint Protection 11 RU7 |
| Not Vulnerable: |
Symantec Endpoint Protection 14 RU1 MP1 Symantec Endpoint Protection 12.1 RU6 MP10 |
Discussion
Symantec Endpoint Protection CVE-2018-5237 Local Privilege Escalation Vulnerability
Symantec Endpoint Protection is prone to an unspecified local privilege escalation vulnerability.
A local attacker can leverage this issue to gain elevated privileges.
Versions prior to Symantec Endpoint Protection (SEP) 14 RU1 MP1 or 12.1 RU6 MP10 are vulnerable.
Symantec Endpoint Protection is prone to an unspecified local privilege escalation vulnerability.
A local attacker can leverage this issue to gain elevated privileges.
Versions prior to Symantec Endpoint Protection (SEP) 14 RU1 MP1 or 12.1 RU6 MP10 are vulnerable.
Exploit / POC
Symantec Endpoint Protection CVE-2018-5237 Local Privilege Escalation Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Symantec Endpoint Protection CVE-2018-5237 Local Privilege Escalation Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Symantec Endpoint Protection CVE-2018-5237 Local Privilege Escalation Vulnerability
References:
References:
- Symantec Home Page (Symantec)
- SYMSA1454: Symantec Endpoint Protection Multiple Issues (Symantec)