PT-2025-18297 · Symantec · Symantec Endpoint Protection

Published

2025-04-30

·

Updated

2025-08-21

·

CVE-2025-3599

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Symantec Endpoint Protection Windows Agent versions prior to 119.1.7.8
Description The issue concerns an Elevation of Privilege vulnerability. This vulnerability may allow an attacker to delete resources that are normally protected from an application or user.
Recommendations For versions prior to 119.1.7.8, update the ERASER Engine to version 119.1.7.8 or later to resolve the issue.

Fix

LPE

Time Of Check To Time Of Use

Weakness Enumeration

Related Identifiers

BDU:2025-09913
CVE-2025-3599

Affected Products

Symantec Endpoint Protection