CVE-2026-11626 PUBLISHED

Local Privilege Escalation in Symantec Endpoint Protection macOS CleanWipe Removal Tool

Assigner: symantec
Reserved: 08.06.2026 Published: 10.06.2026 Updated: 10.06.2026

CleanWipe Removal Tool (macOS), prior to 16.0.0.65, may be susceptible to an Local Privilege Escalation vulnerability, which is a type of issue whereby an attacker with limited privilege access on an affected system can escalate their privileges to gain administrative control.

Metrics

CVSS Vector: CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS Score: 5.4

Product Status

Vendor Broadcom
Product Symantec Endpoint Protection CleanWipe Removal Tool
Versions Default: affected
  • Version 16.0.0.65 is unaffected

Credits

  • Kun Peeks (@SwayZGl1tZyyy) finder

References

Problem Types

  • CWE-250 Execution with unnecessary privileges CWE

Impacts

  • CAPEC-233 Privilege Escalation