CVE-2026-15379
MEDIUMBroadcom Symantec IT Management Suite - Arbitrary File Read as SYSTEM in Symantec ITMS
Title source: ruleDescription
The Altiris WMI provider exposes a class (AltirisAgent_Stream) that allows any local standard user to read the contents of any file accessible to the SYSTEM account, bypassing filesystem ACLs. No admin privileges required. The provider reverts to the LocalSystem context when servicing WMI queries without re-impersonating the caller. Any local standard user can therefore read SYSTEM-readable files — including configuration files, service logs, and secrets stored with SYSTEM/Administrator-only ACLs — by querying the provider directly.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/37995
Scores
CVSS v4
5.1
EPSS
0.0010
EPSS Percentile
1.1%
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:A/V:C/RE:M/U:Red
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-269
Status
published
Products (3)
Broadcom/Symantec IT Management Suite
8.8
Broadcom/Symantec IT Management Suite
8.8.1
Broadcom/Symantec IT Management Suite
before SMA_SMP_8_8_PF_v13 and SMA_SMP_8_8_1_PF_v5
Published
Jul 17, 2026
Tracked Since
Jul 17, 2026