PT-2026-5142 · Symantec · Symantec Endpoint Protection

Sandro Poppi

·

Published

2026-01-28

·

Updated

2026-01-28

·

CVE-2025-13918

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Symantec Endpoint Protection versions prior to 14.3 RU10 Patch 1 Symantec Endpoint Protection versions prior to 14.3 RU9 Patch 2 Symantec Endpoint Protection versions prior to 14.3 RU8 Patch 3
Description The software may be susceptible to an Elevation of Privilege issue, which could allow an attacker to gain elevated access to normally protected resources.
Recommendations Update Symantec Endpoint Protection to version 14.3 RU10 Patch 1 or later. Update Symantec Endpoint Protection to version 14.3 RU9 Patch 2 or later. Update Symantec Endpoint Protection to version 14.3 RU8 Patch 3 or later.

Fix

LPE

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2025-13918

Affected Products

Symantec Endpoint Protection