CVE-2018-12245 is a vulnerability in Symantec Endpoint Protection
Published on November 29, 2018
Symantec Endpoint Protection prior to 14.2 MP1 may be susceptible to a DLL Preloading vulnerability, which in this case is an issue that can occur when an application being installed unintentionally loads a DLL provided by a potential attacker. Note that this particular type of exploit only manifests at install time; no remediation is required for software that has already been installed. This issue only impacted the Trialware media for Symantec Endpoint Protection, which has since been updated.
Products Associated with CVE-2018-12245
Want to know whenever a new CVE is published for Symantec Endpoint Protection? stack.watch will email you.
Affected Versions
Symantec Corporation Symantec Endpoint Protection (SEP) Version Prior to 14.2 MP1 is affected by CVE-2018-12245Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.