VulnerabilityModified
CVE-2018-18363
Norton App Lock prior to 1.4.0.445 can be susceptible to a bypass exploit.
MEDIUM 6.2EPSS 0.39%
Does this matter?
Lower severity and a low EPSS score (0.39%). Track it; it rarely justifies an emergency change on its own.
Description
Norton App Lock prior to 1.4.0.445 can be susceptible to a bypass exploit. In this type of circumstance, the exploit can allow the user to circumvent the app to prevent it from locking the device, thereby allowing the individual to gain device access.
- CVSS 3.0
- 6.2 MEDIUMCVSS:3.0/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.39% probability · 33th percentile
- CISA KEV
- Not listed
- Affected
- symantec/norton app lock
- Source
- secure@symantec.com
References
- http://www.securityfocus.com/bid/106450Third Party Advisory, VDB Entry
- https://support.symantec.com/en_US/article.SYMSA1473.htmlMitigation, Vendor Advisory
- http://www.securityfocus.com/bid/106450Third Party Advisory, VDB Entry
- https://support.symantec.com/en_US/article.SYMSA1473.htmlMitigation, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.