CVE-2015-8151: Symantec Encryption Management Server

Critical severity, CVSS 9.1. EPSS: 1.6% chance of exploitation in the next 30 days.

Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows remote authenticated users to execute arbitrary OS commands by leveraging console administrator access.

Affected products

  • Symantec Encryption Management Server: up to and including 3.3.2

Published 2016-02-18. Last modified 2026-06-17.