PT-2026-5142 · Symantec · Symantec Endpoint Protection

·

CVE-2025-13918

·

Published

2026-01-28

·

Updated

2026-01-28

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Symantec Endpoint Protection versions prior to 14.3 RU10 Patch 1 Symantec Endpoint Protection versions prior to 14.3 RU9 Patch 2 Symantec Endpoint Protection versions prior to 14.3 RU8 Patch 3
Description The software may be susceptible to an Elevation of Privilege issue, which could allow an attacker to gain elevated access to normally protected resources.
Recommendations Update Symantec Endpoint Protection to version 14.3 RU10 Patch 1 or later. Update Symantec Endpoint Protection to version 14.3 RU9 Patch 2 or later. Update Symantec Endpoint Protection to version 14.3 RU8 Patch 3 or later.

Fix

LPE

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-13918

Affected Products

Symantec Endpoint Protection