CVE-2025-13917

HIGH

WSS Agent <9.8.5 - Privilege Escalation

Title source: llm
STIX 2.1

Description

WSS Agent, prior to 9.8.5, may be susceptible to a Elevation of Privilege vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.

Scores

CVSS v3 7.0
EPSS 0.0002
EPSS Percentile 4.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-269
Status published
Products (2)
Broadcom/Symantec Web Security Services Agent 9.8.4
Broadcom/Symantec Web Security Services Agent 9.8.5
Published Jan 28, 2026
Tracked Since Feb 18, 2026