Security Advisory

CVE-2022-37017

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-12-01 00:00:00
Last updated 2025-04-24 20:26:10
Assigner symantec
State PUBLISHED

Description

Symantec Endpoint Protection (Windows) agent, prior to 14.3 RU6/14.3 RU5 Patch 1, may be susceptible to a Security Control Bypass vulnerability, which is a type of issue that can potentially allow a threat actor to circumvent existing security controls. This CVE applies narrowly to the Client User Interface Password protection and Policy Import/Export Password protection, if it has been enabled.