PT-2022-23759 · Symantec · Symantec Endpoint Detection/Response Appliance

Published

2022-11-08

·

Updated

2022-11-09

·

CVE-2022-37015

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Symantec Endpoint Detection and Response (SEDR) Appliance versions prior to 4.7.0
Description The issue is a privilege escalation vulnerability, which allows an attacker to attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.
Recommendations For Symantec Endpoint Detection and Response (SEDR) Appliance versions prior to 4.7.0, update to version 4.7.0 or later to resolve the issue.

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2022-37015

Affected Products

Symantec Endpoint Detection/Response Appliance