CVE-2019-18374: Broadcom Symantec Critical System Protection

Critical severity, CVSS 9.8. EPSS: 1.7% chance of exploitation in the next 30 days.

Symantec Critical System Protection (CSP), versions 8.0, 8.0 HF1 & 8.0 MP1, may be susceptible to an authentication bypass vulnerability, which is a type of issue that can potentially allow a threat actor to circumvent existing authentication controls.

Affected products

  • Broadcom Symantec Critical System Protection: version 8.0.0 only

Published 2019-11-25. Last modified 2026-06-17.