vulnerability

Symantec Endpoint Protection Manager: CVE-2015-8801: SEP Client Device Control Restriction Local Race Condition Bypass

Severity
3
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:N)
Published
2016-06-30
Added
2017-04-25
Modified
2017-10-30

Description

Race condition in the client in Symantec Endpoint Protection (SEP) 12.1 before RU6 MP5 allows local users to bypass intended restrictions on USB file transfer by conducting filesystem operations before the SEP device manager recognizes a new USB device.

Solution

endpoint_protection_manager-cve-2015-8801
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.