Vulnerability index

Browse CVEs

136 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Web Gateway HIGH 10.0
CVE-2012-0297EPSS 73%

The management GUI in Symantec Web Gateway 5.0.x before 5.0.3 does not properly restrict access to application scripts, which allows remote attackers…

Mitigation only
Fix from $1,950 2012-05-21
Web Gateway HIGH 10.0
CVE-2012-0299EPSS 64%

The file-management scripts in the management GUI in Symantec Web Gateway 5.0.x before 5.0.3 allow remote attackers to upload arbitrary code to a des…

Mitigation only
Fix from $1,950 2012-05-21
Web Gateway MEDIUM 6.4
CVE-2012-0298EPSS 9%

The file-management scripts in the management GUI in Symantec Web Gateway 5.0.x before 5.0.3 allow remote attackers to (1) read or (2) delete arbitra…

Mitigation only
Fix from $1,600 2012-05-21
Pcanywhere HIGH 10.0
CVE-2011-3478EPSS 39%

The host-services component in Symantec pcAnywhere 12.5.x through 12.5.3, and IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 1…

Mitigation only
Fix from $1,950 2012-01-25
Pcanywhere MEDIUM 6.8
CVE-2011-3479

Symantec pcAnywhere 12.5.x through 12.5.3, and IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), uses world-writable per…

Mitigation only
Fix from $1,600 2012-01-25
Endpoint Protection MEDIUM 6.8
CVE-2011-0551

Cross-site request forgery (CSRF) vulnerability in the Web Interface in the Endpoint Protection Manager in Symantec Endpoint Protection (SEP) 11.0.60…

Mitigation only
Fix from $1,600 2011-08-15
Web Gateway HIGH 7.5
CVE-2011-0549

SQL injection vulnerability in forget.php in the management GUI in Symantec Web Gateway 4.5.x allows remote attackers to execute arbitrary SQL comman…

Mitigation only
Fix from $1,950 2011-07-11
Backup Exec MEDIUM 6.5
CVE-2011-0546

Symantec Backup Exec 11.0, 12.0, 12.5, 13.0, and 13.0 R2 does not validate identity information sent between the media server and the remote agent, w…

Mitigation only
Fix from $1,600 2011-05-31
Liveupdate Administrator MEDIUM 6.8
CVE-2011-0545

Cross-site request forgery (CSRF) vulnerability in adduser.do in Symantec LiveUpdate Administrator (LUA) before 2.3 allows remote attackers to hijack…

No fix yet
Fix from $1,600 2011-03-28
Antivirus HIGH 9.3
CVE-2011-0688

Intel Alert Management System (aka AMS or AMS2), as used in Symantec Antivirus Corporate Edition (SAVCE) 10.x before 10.1 MR10, Symantec System Cente…

Mitigation only
Fix from $1,950 2011-01-31
Antivirus HIGH 9.3
CVE-2010-0111EPSS 35%

HDNLRSVC.EXE in the Intel Alert Handler service (aka Symantec Intel Handler service) in Intel Alert Management System (aka AMS or AMS2), as used in S…

Mitigation only
Fix from $1,950 2011-01-31
Antivirus HIGH 7.9
CVE-2010-0110EPSS 5%

Multiple stack-based buffer overflows in Intel Alert Management System (aka AMS or AMS2), as used in Symantec AntiVirus Corporate Edition (SAVCE) 10.…

Mitigation only
Fix from $1,950 2011-01-31
Web Gateway HIGH 7.5
CVE-2010-0115

SQL injection vulnerability in login.php in the GUI management console in Symantec Web Gateway 4.5 before 4.5.0.376 allows remote attackers to execut…

Mitigation only
Fix from $1,950 2011-01-14
Endpoint Protection HIGH 7.5
CVE-2010-0114EPSS 5%

fw_charts.php in the reporting module in the Manager (aka SEPM) component in Symantec Endpoint Protection (SEP) 11.x before 11 RU6 MP2 allows remote …

Mitigation only
Fix from $1,950 2010-12-22
Workspace Streaming HIGH 9.3
CVE-2008-4389

Symantec AppStream 5.2.x and Symantec Workspace Streaming (SWS) 6.1.x before 6.1 SP4 do not properly perform authentication, which allows remote Work…

Mitigation only
Fix from $1,950 2010-06-17
Sygate Personal Firewall HIGH 9.3
CVE-2010-2305EPSS 20%

Buffer overflow in an ActiveX control in SSHelper.dll for Symantec Sygate Personal Firewall 5.6 build 2808 allows remote attackers to execute arbitra…

No fix yet
Fix from $1,950 2010-06-16
Client Security HIGH 9.3
CVE-2010-0107EPSS 7%

Buffer overflow in an ActiveX control (SYMLTCOM.dll) in Symantec N360 1.0 and 2.0; Norton Internet Security, AntiVirus, SystemWorks, and Confidential…

Mitigation only
Fix from $1,950 2010-02-23
Antivirus HIGH 10.0
CVE-2010-0108EPSS 19%

Buffer overflow in the cliproxy.objects.1 ActiveX control in the Symantec Client Proxy (CLIproxy.dll) in Symantec AntiVirus 10.0.x, 10.1.x before MR9…

Mitigation only
Fix from $1,950 2010-02-19
Altiris Deployment Solution HIGH 10.0
CVE-2009-3179EPSS 5%

Multiple unspecified vulnerabilities in Symantec Altiris Deployment Solution 6.9 might allow remote attackers to execute arbitrary code via unknown c…

No fix yet
Fix from $1,950 2009-09-11
Altiris Deployment Solution HIGH 7.8
CVE-2009-3178

Unspecified vulnerability in mm.exe in Symantec Altiris Deployment Solution 6.9 allows remote attackers to cause a denial of service via unknown atta…

No fix yet
Fix from $1,950 2009-09-11
Altiris Deployment Solution HIGH 7.2
CVE-2009-3108

The Aclient GUI in Symantec Altiris Deployment Solution 6.9.x before 6.9 SP3 Build 430 installs a client executable with insecure permissions (Everyo…

Mitigation only
Fix from $1,950 2009-09-08
Altiris Deployment Solution MEDIUM 5.8
CVE-2009-3110

Race condition in the file transfer functionality in Symantec Altiris Deployment Solution 6.9.x before 6.9 SP3 Build 430 allows remote attackers to r…

Mitigation only
Fix from $1,600 2009-09-08
Winfax Pro HIGH 9.3
CVE-2009-2570EPSS 12%

Stack-based buffer overflow in the Symantec.FaxViewerControl.1 ActiveX control in WinFax\DCCFAXVW.DLL in Symantec WinFax Pro 10.03 allows remote atta…

No fix yet
Fix from $1,950 2009-07-22
Antivirus MEDIUM 5.0
CVE-2009-1432

Symantec Reporting Server, as used in Symantec AntiVirus (SAV) Corporate Edition 10.1 before 10.1 MR8 and 10.2 before 10.2 MR2, Symantec Client Secur…

Mitigation only
Fix from $1,600 2009-04-30
Antivirus HIGH 9.3
CVE-2008-5543

Symantec AntiVirus (SAV) 10, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by pla…

Mitigation only
Fix from $1,950 2008-12-12
Altiris Deployment Solution HIGH 7.2
CVE-2008-2289

Unspecified vulnerability in a tooltip element in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 allows local users to gain priv…

Mitigation only
Fix from $1,950 2008-05-18
Altiris Deployment Solution HIGH 7.2
CVE-2008-2290

Unspecified vulnerability in the Agent user interface in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 allows local users to ga…

Mitigation only
Fix from $1,950 2008-05-18
Backup Exec For Windows Server MEDIUM 5.1
CVE-2007-6017

The PVATLCalendar.PVCalendar.1 ActiveX control in pvcalendar.ocx in the scheduler component in the Media Server in Symantec Backup Exec for Windows S…

Mitigation only
Fix from $1,600 2008-02-29
Norton Antivirus MEDIUM 6.0
CVE-2007-5829

The Disk Mount scanner in Symantec AntiVirus for Macintosh 9.x and 10.x, Norton AntiVirus for Macintosh 10.0 and 10.1, and Norton Internet Security f…

Mitigation only
Fix from $1,600 2007-11-05
Veritas Backup Exec HIGH 10.0
CVE-2007-5126

Unspecified vulnerability in the client in Symantec Veritas Backup Exec for Windows Servers 11d has unknown impact and remote attack vectors. NOTE: …

No fix yet
Fix from $1,950 2007-09-27