vulnerability
Symantec Endpoint Protection Manager: CVE-2015-8801: SEP Client Device Control Restriction Local Race Condition Bypass
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
3 | (AV:L/AC:M/Au:N/C:P/I:P/A:N) | 2016-06-30 | 2017-04-25 | 2017-10-30 |
Severity
3
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:N)
Published
2016-06-30
Added
2017-04-25
Modified
2017-10-30
Description
Race condition in the client in Symantec Endpoint Protection (SEP) 12.1 before RU6 MP5 allows local users to bypass intended restrictions on USB file transfer by conducting filesystem operations before the SEP device manager recognizes a new USB device.
Solution
endpoint_protection_manager-cve-2015-8801

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.