CVE-2017-13680: Symantec Endpoint Protection

Medium severity, CVSS 5.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Prior to SEP 12.1 RU6 MP9 & SEP 14 RU1 Symantec Endpoint Protection Windows endpoint can encounter a situation whereby an attacker could use the product's UI to perform unauthorized file deletes on the resident file system.

Affected products

  • Symantec Endpoint Protection: before 12.1 (fixed in 12.1); version 14 only

Published 2017-11-06. Last modified 2026-06-17.