Unrated severityNVD Advisory· Published Jul 17, 2026· Updated Jul 21, 2026
Local privilege escalation in Symantec ITMS
CVE-2026-15380
Description
A non-administrator interactive user can obtain full SYSTEM code execution through a DCOM/task scheduler logic chain — no network access, no memory corruption required (ITMS 8.7.3)
Affected products
2- Range: 8.7.3
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.