CVE-2022-25625
HIGHBroadcom Symantec Privileged Access Management 3.4.0.0 through 3.4.6.05 - Unauthorized Access to Administration Configuration
Title source: llmDescription
A malicious unauthorized PAM user can access the administration configuration data and change the values.
References (1)
Core 1
Core References
Vendor Advisory x_refsource_misc
https://support.broadcom.com/external/content/SecurityAdvisories/0/20850
Scores
CVSS v3
8.8
EPSS
0.0051
EPSS Percentile
66.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
Status
published
Products (1)
broadcom/symantec_privileged_access_management
3.4.0.0 - 3.4.6.05
Published
Aug 26, 2022
Tracked Since
Feb 18, 2026