CVE-2018-18368: Symantec Endpoint Protection Manager

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Symantec Endpoint Protection Manager (SEPM), prior to 14.2 RU1, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.

Affected products

  • Symantec Endpoint Protection Manager: up to and including 14.2

Published 2019-11-15. Last modified 2026-06-17.