CVE-2018-18367: Symantec Endpoint Protection Manager
High severity, CVSS 7.8. EPSS: 1.7% chance of exploitation in the next 30 days.
Symantec Endpoint Protection Manager (SEPM) prior to and including 12.1 RU6 MP9 and prior to 14.2 RU1 may be susceptible to a DLL Preloading vulnerability, which is a type of issue that can occur when an application looks to call a DLL for execution and an attacker provides a malicious DLL to use instead.
Affected products
- Symantec Endpoint Protection Manager: version 12.1 only; version 14 only; version 14.0.1 only; version 14.1 only; version 14.2 only
Published 2019-04-25. Last modified 2026-06-17.