Vulnerability Details CVE-2015-8156
Unquoted Windows search path vulnerability in EEDService in Symantec Endpoint Encryption (SEE) 11.x before 11.1.1 allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory, as demonstrated by program.exe.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 8.1%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 7.2
Products affected by CVE-2015-8156
-
cpe:2.3:a:symantec:endpoint_encryption:11.0
-
cpe:2.3:a:symantec:endpoint_encryption:11.0.0
-
cpe:2.3:a:symantec:endpoint_encryption:11.0.1