Security restrictions bypass in Symantec Endpoint Protection - CVE-2018-12238
Published: December 3, 2018 / Updated: December 3, 2018
Symantec Endpoint Protection
Detailed vulnerability description
The vulnerability allows a local attacker to bypass security restrictions on the target system.
The vulnerability exists due to an error when one of the antivirus engines depends on a signature pattern from a database to identify malicious files and viruses. A local attacker can circumvent one of the virus detection engines to avoid a specific type of virus protection.