← Vulnerability feed

Vulnerability record · CVE-2019-12759 · published 15 November 2019

CVE-2019-12759: Symantec endpoint protection manager vulnerability

Symantec · Endpoint Protection Manager

Symantec Endpoint Protection Manager (SEPM) and Symantec Mail Security for MS Exchange (SMSMSE), prior to versions 14.2 RU2 and 7.5.x respectively, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.

7.8 CVSS 3.1 High EPSS 0.48% · top 60.5%
7.8CVSS 3.1 base score, v2 7.2
0.48%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

Symantec Endpoint Protection Manager (SEPM) and Symantec Mail Security for MS Exchange (SMSMSE), prior to versions 14.2 RU2 and 7.5.x respectively, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2019-12759 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2009-3032Ibm lotus notes vulnerabilityInteger overflow in kvolefio.dll 8.5.0.8339 and 10.5.0.0 in the Autonomy KeyView Filter SDK, as used in IBM Lotus Notes 8.5, Symantec Mail Security f…EPSS 3.7%9.3CVE-2011-0548Symantec mail security memory buffer overflow vulnerabilityBuffer overflow in the Lotus Freelance Graphics PRZ file viewer in Autonomy KeyView, as used in Symantec Mail Security (SMS) 6.x through 8.x, Symante…EPSS 5.1%9.3CVE-2010-0131Autonomy keyview export sdk memory buffer overflow vulnerabilityStack-based buffer overflow in the SpreadSheet Lotus 123 reader (wkssr.dll), as used in Autonomy KeyView 10.4 and 10.9, Symantec Mail Security, and p…EPSS 4.1%9.3CVE-2009-3037Ibm lotus notes memory buffer overflow vulnerabilityBuffer overflow in xlssr.dll in the Autonomy KeyView XLS viewer (aka File Viewer for Excel), as used in IBM Lotus Notes 5.x through 8.5.x, Symantec M…EPSS 5.7%9.3CVE-2008-4564Autonomy keyview export sdk memory buffer overflow vulnerabilityStack-based buffer overflow in wp6sr.dll in the Autonomy KeyView SDK 10.4 and earlier, as used in IBM Lotus Notes, Symantec Mail Security (SMS) produ…EPSS 6.8%9.3CVE-2007-5405Activepdf docconverter memory buffer overflow vulnerabilityMultiple buffer overflows in kpagrdr.dll 2.0.0.2 and 10.3.0.0 in the Applix Presents reader in Autonomy (formerly Verity) KeyView, as used by IBM Lot…EPSS 5.7%9.3CVE-2007-5406Ibm lotus notes vulnerabilitykpagrdr.dll 2.0.0.2 and 10.3.0.0 in the Applix Presents reader in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes, Symantec Mail Secur…EPSS 3.0%9.3CVE-2007-6020Activepdf docconverter memory buffer overflow vulnerabilityMultiple stack-based buffer overflows in foliosr.dll in the Folio Flat File speed reader in Autonomy (formerly Verity) KeyView 10.3.0.0, as used by I…EPSS 5.7%

Source: NIST National Vulnerability Database (record CVE-2019-12759), CISA KEV, FIRST EPSS (scores of 2026-10-04). This page is refreshed as NVD updates the record.