CVE-2025-13918: Broadcom Symantec Endpoint Protection Windows Client
Medium severity, CVSS 6.7. EPSS: 0.2% chance of exploitation in the next 30 days.
Symantec Endpoint Protection, prior to 14.3 RU10 Patch 1, RU9 Patch 2, and RU8 Patch 3, may be susceptible to a Elevation of Privilege vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.
Affected products
- Broadcom Symantec Endpoint Protection Windows Client: version 14.3.12154.10000 only
Published 2026-01-28. Last modified 2026-06-17.