SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2018-5239

Norton App Lock prior to v1.3.0.332 can be susceptible to a bypass exploit.

MEDIUM 6.2EPSS 0.39%

Does this matter?

Lower severity and a low EPSS score (0.39%). Track it; it rarely justifies an emergency change on its own.

Description

Norton App Lock prior to v1.3.0.332 can be susceptible to a bypass exploit. In this type of circumstance, the exploit can allow the user to circumvent the app to prevent it from locking the device, thereby allowing the individual to gain device access.

CVSS 3.0
6.2 MEDIUMCVSS:3.0/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS
0.39% probability · 33th percentile
CISA KEV
Not listed
Affected
symantec/norton app lock
Source
secure@symantec.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.