CVE-2018-18363

MEDIUM

Norton App Lock <1.4.0.445 - Auth Bypass

Title source: llm
STIX 2.1

Description

Norton App Lock prior to 1.4.0.445 can be susceptible to a bypass exploit. In this type of circumstance, the exploit can allow the user to circumvent the app to prevent it from locking the device, thereby allowing the individual to gain device access.

References (2)

Core 2
Core References
Mitigation, Vendor Advisory x_refsource_confirm
https://support.symantec.com/en_US/article.SYMSA1473.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/106450

Scores

CVSS v3 6.2
EPSS 0.0007
EPSS Percentile 21.2%
Attack Vector PHYSICAL
CVSS:3.0/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (1)
symantec/norton_app_lock < 1.4.0.445
Published Jan 24, 2019
Tracked Since Feb 18, 2026