CVE-2015-8156: Symantec Endpoint Encryption
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Unquoted Windows search path vulnerability in EEDService in Symantec Endpoint Encryption (SEE) 11.x before 11.1.1 allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory, as demonstrated by program.exe.
Affected products
- Symantec Endpoint Encryption: version 11.0 only; version 11.0.0 only; version 11.0.1 only
Published 2016-05-14. Last modified 2026-06-17.