CVE-2026-15380: Broadcom Symantec Management Suite

Medium severity, CVSS 5.1. EPSS: 0.2% chance of exploitation in the next 30 days.

A non-administrator interactive user can obtain full SYSTEM code execution through a DCOM/task scheduler logic chain โ€” no network access, no memory corruption required (ITMS 8.7.3)

Affected products

Published 2026-07-17. Last modified 2026-07-21.