PT-2025-7474 · Symantec+1 · Symantec Diagnostic Tool+1

Ary Dobrovolskiy

·

Published

2025-02-19

·

Updated

2025-02-27

·

CVE-2025-0893

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Symantec Diagnostic Tool (SymDiag) versions prior to 3.0.79
Description The issue is a Privilege Escalation vulnerability that may affect Symantec Diagnostic Tool (SymDiag). It is only applicable to the combination of SymDiag and the WSS Agent together. The vulnerability was disclosed on 2025-02-01 and a patch was released on 2025-02-03.
Recommendations For Symantec Diagnostic Tool (SymDiag) versions prior to 3.0.79, update to version 3.0.79 or later to resolve the issue. As a temporary workaround, consider restricting the use of the vulnerable component until a patch is available.

Fix

LPE

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2025-0893

Affected Products

Symantec Diagnostic Tool
Wss Agent