CVE-2016-5311: Symantec Endpoint Protection
High severity, CVSS 7.8. EPSS: 0.7% chance of exploitation in the next 30 days.
A Privilege Escalation vulnerability exists in Symantec Norton Antivirus, Norton AntiVirus with Backup, Norton Security, Norton Security with Backup, Norton Internet Security, Norton 360, Endpoint Protection Small Business Edition Cloud, and Endpoint Protection Cloud Client due to a DLL-preloading without path restrictions, which could let a local malicious user obtain system privileges.
Affected products
- Symantec Endpoint Protection: before 22.8.0.50 (fixed in 22.8.0.50)
- Symantec Endpoint Protection Cloud: before 22.8.0.50 (fixed in 22.8.0.50)
- Symantec Norton 360: before 22.7 (fixed in 22.7)
- Symantec Norton Antivirus: before 22.7 (fixed in 22.7)
- Symantec Norton Antivirus With Backup: before 22.7 (fixed in 22.7)
- Symantec Norton Family: before 22.7 (fixed in 22.7)
- Symantec Norton Internet Security: before 22.7 (fixed in 22.7)
- Symantec Norton Security: before 22.7 (fixed in 22.7)
- Symantec Norton Security With Backup: before 22.7 (fixed in 22.7)
Published 2020-01-09. Last modified 2026-06-17.