Show plain JSON{"id": "CVE-2019-18373", "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 4.4, "accessVector": "LOCAL", "vectorString": "AV:L/AC:M/Au:N/C:P/I:P/A:P", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "MEDIUM", "availabilityImpact": "PARTIAL", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 6.4, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 3.4, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true}], "cvssMetricV31": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 5.6, "attackVector": "PHYSICAL", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:P/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:L", "integrityImpact": "HIGH", "userInteraction": "REQUIRED", "attackComplexity": "HIGH", "availabilityImpact": "LOW", "privilegesRequired": "HIGH", "confidentialityImpact": "HIGH"}, "impactScore": 5.5, "exploitabilityScore": 0.1}]}, "published": "2019-11-18T21:15:12.433", "references": [{"url": "https://support.symantec.com/us/en/article.SYMSA1496.html", "tags": ["Vendor Advisory"], "source": "secure@symantec.com"}, {"url": "https://support.symantec.com/us/en/article.SYMSA1496.html", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "NVD-CWE-noinfo"}]}], "descriptions": [{"lang": "en", "value": "Norton App Lock, prior to 1.4.0.503, may be susceptible to a bypass exploit. In this type of circumstance, the exploit can allow the user to circumvent the app to prevent it from locking other apps on the device, thereby allowing the individual to gain access."}, {"lang": "es", "value": "Norton App Lock, versiones anteriores a 1.4.0.503, puede ser susceptible a una explotaci\u00f3n de omisi\u00f3n. En este tipo de circunstancias, la explotaci\u00f3n puede permitir al usuario omitir la aplicaci\u00f3n para impedir que bloquee otras aplicaciones en el dispositivo, permitiendo al individuo conseguir acceso."}], "lastModified": "2024-11-21T04:33:09.420", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:symantec:norton_app_lock:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E93BE86-A7D4-4A4E-8CEE-F73F4B5AB4AA", "versionEndExcluding": "1.4.0.503"}], "operator": "OR"}]}], "sourceIdentifier": "secure@symantec.com"}