Description
Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 MP1 and prior to 14.2.5569.2100 respectively, may be susceptible to a denial of service vulnerability, which is a type of issue whereby a threat actor attempts to tie up the resources of a resident application, thereby making certain functions unavailable.
References (1)
Core 1
Core References
Vendor Advisory x_refsource_misc
https://support.symantec.com/us/en/article.SYMSA1505.html
Scores
CVSS v3
5.5
EPSS
0.0006
EPSS Percentile
19.4%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Details
Status
published
Products (5)
symantec/endpoint_protection
11.0 (19 CPE variants)
symantec/endpoint_protection
12.1 (22 CPE variants)
symantec/endpoint_protection
14.0.0 (3 CPE variants)
symantec/endpoint_protection
14.0.1 (3 CPE variants)
symantec/endpoint_protection
14.2 (3 CPE variants)
Published
Feb 11, 2020
Tracked Since
Feb 18, 2026