Vulnerability index

Browse CVEs

479 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Symantec Identity Governance And Administration MEDIUM 6.1
CVE-2023-23951

Ability to enumerate the Oracle LDAP attributes for the current user by modifying the query used by the application

No fix yet
Fix from $1,600 2023-01-26
Symantec Identity Governance And Administration MEDIUM 5.4
CVE-2023-23949

An authenticated user can supply malicious HTML and JavaScript code that will be executed in the client browser.

Mitigation only
Fix from $1,600 2023-01-26
Symantec Endpoint Protection HIGH 7.8
CVE-2022-25631

Symantec Endpoint Protection, prior to 14.3 RU6 (14.3.9210.6000), may be susceptible to a Elevation of Privilege vulnerability, which is a type of is…

Fix: 14.3.9210.6000+
Fix from $1,950 2023-01-20
Symantec Identity Governance And Administration HIGH 8.8
CVE-2022-25628

An authenticated user can perform XML eXternal Entity injection in Management Console in Symantec Identity Manager 14.4

Mitigation only
Fix from $1,950 2022-12-16
Symantec Identity Governance And Administration MEDIUM 6.7
CVE-2022-25627

An authenticated administrator who has physical access to the environment can carry out Remote Command Execution on Management Console in Symantec Id…

Mitigation only
Fix from $1,600 2022-12-16
Symantec Identity Governance And Administration MEDIUM 5.3
CVE-2022-25626

An unauthenticated user can access Identity Manager’s management console specific page URLs. However, the system doesn’t allow the user to carry out …

Mitigation only
Fix from $1,600 2022-12-16
Fabric Operating System CRITICAL 9.8
CVE-2022-33186

A vulnerability in Brocade Fabric OS software v9.1.1, v9.0.1e, v8.2.3c, v7.4.2j, and earlier versions could allow a remote unauthenticated attacker t…

Mitigation only
Fix from $2,300 2022-12-08
Symantec Endpoint Protection CRITICAL 9.8
CVE-2022-37016

Symantec Endpoint Protection (Windows) agent may be susceptible to a Privilege Escalation vulnerability, which is a type of issue whereby an attacker…

Fix: after 14.3.5
Fix from $2,300 2022-12-01
Symantec Endpoint Protection HIGH 7.5
CVE-2022-37017

Symantec Endpoint Protection (Windows) agent, prior to 14.3 RU6/14.3 RU5 Patch 1, may be susceptible to a Security Control Bypass vulnerability, whic…

Fix: 14.3.5.1+
Fix from $1,950 2022-12-01
Fabric Operating System HIGH 8.8
CVE-2022-33179

A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, and 7.4.2j could allow a local authenticated user to break …

Fix: 7.4.2j / 8.2.3c+
Fix from $1,950 2022-10-25
Fabric Operating System HIGH 8.8
CVE-2022-33183

A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5, 7.4.2.j could allow a remote authenticated attac…

Fix: 7.4.2.j / 8.2.3c+
Fix from $1,950 2022-10-25
Fabric Operating System HIGH 7.8
CVE-2022-33182

A privilege escalation vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5, could allow a local authent…

Fix: 8.2.3c / 9.0.1e+
Fix from $1,950 2022-10-25
Fabric Operating System HIGH 7.8
CVE-2022-33184

A vulnerability in fab_seg.c.h libraries of all Brocade Fabric OS versions before Brocade Fabric OS v9.1.1, v9.0.1e, v8.2.3c, v8.2.0_cbn5, 7.4.2j cou…

Fix: 7.4.2.j / 8.2.3c+
Fix from $1,950 2022-10-25
Fabric Operating System HIGH 7.8
CVE-2022-33185

Several commands in Brocade Fabric OS before Brocade Fabric OS v.9.0.1e, and v9.1.0 use unsafe string functions to process user input. Authenticated …

Fix: 9.0.1e+
Fix from $1,950 2022-10-25
Fabric Operating System HIGH 7.2
CVE-2022-33178

A vulnerability in the radius authentication system of Brocade Fabric OS before Brocade Fabric OS 9.0 could allow a remote attacker to execute arbitr…

Fix: 9.0.0+
Fix from $1,950 2022-10-25
Fabric Operating System MEDIUM 5.5
CVE-2022-33180

A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5 could allow a local authenticated attacker to exp…

Fix: 8.2.3c / 9.0.1e+
Fix from $1,600 2022-10-25
Fabric Operating System MEDIUM 5.5
CVE-2022-33181

An information disclosure vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5, 7.4.2.j could allow a lo…

Fix: 7.4.2.j / 8.2.3c+
Fix from $1,600 2022-10-25
Fabric Operating System MEDIUM 6.5
CVE-2022-28170

Brocade Fabric OS Web Application services before Brocade Fabric v9.1.0, v9.0.1e, v8.2.3c, v7.4.2j store server and user passwords in the debug state…

Fix: 7.4.2j / 8.2.3c+
Fix from $1,600 2022-10-25
Fabric Operating System HIGH 8.8
CVE-2022-28169

Brocade Webtools in Brocade Fabric OS versions before Brocade Fabric OS versions v9.1.1, v9.0.1e, and v8.2.3c could allow a low privilege webtools, u…

Fix: 8.2.3c / 9.0.1e+
Fix from $1,950 2022-10-25
Symantec Privileged Access Management HIGH 8.8
CVE-2022-25625

A malicious unauthorized PAM user can access the administration configuration data and change the values.

Fix: 3.4.6.05 / 4.0.0.05+
Fix from $1,950 2022-08-26
Fabric Operating System MEDIUM 5.5
CVE-2021-27798

A vulnerability in Brocade Fabric OS versions 7.4.1b and 7.3.1d could allow local users to conduct privileged directory transversal. Brocade Fabric O…

Mitigation only
Fix from $1,600 2022-08-05
Advanced Secure Gateway CRITICAL 9.1
CVE-2021-46825

Symantec Advanced Secure Gateway (ASG) and ProxySG are susceptible to an HTTP desync vulnerability. When a remote unauthenticated attacker and other …

Mitigation only
Fix from $2,300 2022-07-07
Sannav HIGH 7.5
CVE-2022-28166

In Brocade SANnav version before SANN2.2.0.2 and Brocade SANNav before 2.1.1.8, the implementation of TLS/SSL Server Supports the Use of Static Key C…

Fix: 2.1.1.8 / 2.2.0.2+
Fix from $1,950 2022-06-27
Sannav HIGH 7.5
CVE-2022-28168

In Brocade SANnav before Brocade SANnav v2.2.0.2 and Brocade SANnav2.1.1.8, encoded scp-server passwords are stored using Base64 encoding, which coul…

Fix: 2.1.1.8 / 2.2.0.2+
Fix from $1,950 2022-06-27
Sannav MEDIUM 6.5
CVE-2022-28167

Brocade SANnav before Brocade SANvav v. 2.2.0.2 and Brocade SANanv v.2.1.1.8 logs the Brocade Fabric OS switch password in plain text in asyncjobsche…

Fix: 2.1.1.8 / 2.2.0.2+
Fix from $1,600 2022-06-27
Ca Automic Automation CRITICAL 9.8
CVE-2022-33750

CA Automic Automation 12.2 and 12.3 contain an authentication error vulnerability in the Automic agent that could allow a remote attacker to potentia…

Mitigation only
Fix from $2,300 2022-06-16
Ca Automic Automation CRITICAL 9.8
CVE-2022-33752

CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that could allow a remote attacker to…

Mitigation only
Fix from $2,300 2022-06-16
Ca Automic Automation CRITICAL 9.8
CVE-2022-33754

CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that could allow a remote attacker to…

Mitigation only
Fix from $2,300 2022-06-16
Ca Automic Automation HIGH 8.8
CVE-2022-33753

CA Automic Automation 12.2 and 12.3 contain an insecure file creation and handling vulnerability in the Automic agent that could allow a user to pote…

Mitigation only
Fix from $1,950 2022-06-16
Ca Clarity HIGH 7.5
CVE-2022-33739

CA Clarity 15.8 and below and 15.9.0 contain an insecure XML parsing vulnerability that could allow a remote attacker to potentially view the content…

Fix: after 15.8
Fix from $1,950 2022-06-16