Security restrictions bypass in Symantec Endpoint Protection - CVE-2018-12239
Published: December 3, 2018
Symantec Endpoint Protection
Detailed vulnerability description
The vulnerability allows a physical high-privileged attacker to bypass security restrictions on the target system.
The vulnerability exists due to an error when one of the antivirus engines depends on a signature pattern from a database to identify malicious files and viruses. A physical attacker can circumvent one of the virus detection engines to avoid a specific type of virus protection.