Vulnerability index

Browse CVEs

409 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Altiris Deployment Solution HIGH 7.2
CVE-2008-2289

Unspecified vulnerability in a tooltip element in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 allows local users to gain priv…

Mitigation only
Fix from $1,950 2008-05-18
Altiris Deployment Solution HIGH 7.2
CVE-2008-2290

Unspecified vulnerability in the Agent user interface in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 allows local users to ga…

Mitigation only
Fix from $1,950 2008-05-18
Norton 360 HIGH 9.3
CVE-2008-0312EPSS 6%

Stack-based buffer overflow in the AutoFix Support Tool ActiveX control 2.7.0.1 in SYMADATA.DLL in multiple Symantec Norton products, including Norto…

Patch available
Fix from $1,950 2008-04-08
Norton 360 MEDIUM 6.8
CVE-2008-0313

The ActiveDataInfo.LaunchProcess method in the SymAData.ActiveDataInfo.1 ActiveX control 2.7.0.1 in SYMADATA.DLL in multiple Symantec Norton products…

Patch available
Fix from $1,600 2008-04-08
Altiris Deployment Solution HIGH 7.2
CVE-2008-1473

The Altiris Client Service (AClient.exe) in Symantec Altiris Deployment Solution 6.8.x before 6.9.164 allows local users to gain privileges via a "Sh…

Patch available
Fix from $1,950 2008-03-24
Backup Exec For Windows Server HIGH 9.3
CVE-2007-6016EPSS 50%

Multiple stack-based buffer overflows in the PVATLCalendar.PVCalendar.1 ActiveX control in pvcalendar.ocx in the scheduler component in the Media Ser…

Patch available
Fix from $1,950 2008-02-29
Backup Exec For Windows Server MEDIUM 5.1
CVE-2007-6017

The PVATLCalendar.PVCalendar.1 ActiveX control in pvcalendar.ocx in the scheduler component in the Media Server in Symantec Backup Exec for Windows S…

Mitigation only
Fix from $1,600 2008-02-29
Scan Engine HIGH 7.1
CVE-2008-0308

Symantec Decomposer, as used in certain Symantec antivirus products including Symantec Scan Engine 5.1.2 and other versions before 5.1.6.31, allows r…

Fix: after 5.1.4.24
Fix from $1,950 2008-02-28
Scan Engine MEDIUM 6.8
CVE-2008-0309

Stack-based buffer overflow in Symantec Decomposer, as used in certain Symantec antivirus products including Symantec Scan Engine 5.1.2 and other ver…

Fix: after 5.1.4.24
Fix from $1,600 2008-02-28
Veritas Storage Foundation HIGH 9.3
CVE-2008-0638EPSS 6%

Heap-based buffer overflow in the Veritas Enterprise Administrator (VEA) service (aka vxsvc.exe) in Symantec Veritas Storage Foundation 5.0 allows re…

Patch available
Fix from $1,950 2008-02-21
Altiris Notification Server MEDIUM 6.8
CVE-2008-0716

The agent in Symantec Altiris Notification Server before 6.0 SP3 R7 allows local users to gain privileges via a "Shatter" style attack.

Fix: after 6.0_sp3
Fix from $1,600 2008-02-12
Ghost Solutions Suite HIGH 10.0
CVE-2008-0640

Symantec Ghost Solution Suite 1.1 before 1.1 patch 2, 2.0.0, and 2.0.1 does not authenticate connections between the console and the Ghost Management…

Patch available
Fix from $1,950 2008-02-08
Backupexec System Recovery HIGH 10.0
CVE-2008-0457EPSS 12%

Unrestricted file upload vulnerability in the FileUpload class running on the Symantec LiveState Apache Tomcat server, as used by Symantec Backup Exe…

Patch available
Fix from $1,950 2008-02-07
Backupexec System Recovery HIGH 7.8
CVE-2007-4347

Multiple integer overflows in the Job Engine (bengine.exe) service in Symantec Backup Exec for Windows Servers (BEWS) 11d build 11.0.7170 and 11.0.6.…

Patch available
Fix from $1,950 2007-11-29
Backupexec System Recovery MEDIUM 5.0
CVE-2007-4346

The Job Engine (bengine.exe) service in Symantec Backup Exec for Windows Servers (BEWS) 11d build 11.0.7170 and 11.0.6.6235 allows remote attackers t…

Patch available
Fix from $1,600 2007-11-29
Altiris Deployment Solution HIGH 7.2
CVE-2007-5838

Aclient in Symantec Altiris Deployment Solution 6.x before 6.8.380.0 allows local users to gain local System privileges via the "Enable key-based aut…

Patch available
Fix from $1,950 2007-11-06
Norton Antivirus MEDIUM 6.0
CVE-2007-5829

The Disk Mount scanner in Symantec AntiVirus for Macintosh 9.x and 10.x, Norton AntiVirus for Macintosh 10.0 and 10.1, and Norton Internet Security f…

Mitigation only
Fix from $1,600 2007-11-05
Altiris Deployment Solution MEDIUM 6.9
CVE-2007-5555

Unspecified vulnerability in Symantec Altiris Deployment Solution allows attackers to obtain authentication credentials via unknown vectors, aka "Aut…

Patch available
Fix from $1,600 2007-10-18
Antivirus Scan Engine HIGH 9.3
CVE-2007-0447EPSS 6%

Heap-based buffer overflow in the Decomposer component in multiple Symantec products allows remote attackers to execute arbitrary code via multiple c…

Patch available
Fix from $1,950 2007-10-05
Antivirus Scan Engine HIGH 9.3
CVE-2007-3699

The Decomposer component in multiple Symantec products allows remote attackers to cause a denial of service (infinite loop) via a certain value in th…

Patch available
Fix from $1,950 2007-10-05
Veritas Backup Exec HIGH 10.0
CVE-2007-5126

Unspecified vulnerability in the client in Symantec Veritas Backup Exec for Windows Servers 11d has unknown impact and remote attack vectors. NOTE: …

No fix yet
Fix from $1,950 2007-09-27
Norton Internet Security HIGH 7.2
CVE-2007-5047

Norton Internet Security 2008 15.0.0.60 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, wh…

Mitigation only
Fix from $1,950 2007-09-24
Enterprise Firewall HIGH 9.3
CVE-2007-4422

The login interface in Symantec Enterprise Firewall 6.x, when a VPN with pre-shared key (PSK) authentication is enabled, generates different response…

Mitigation only
Fix from $1,950 2007-08-18
Altiris Deployment Solution HIGH 7.2
CVE-2007-4380

Aclient in Symantec Altiris Deployment Solution 6 before 6.8 SP2 (6.8.378) allows local users to gain local System privileges via the Log File Viewer.

Fix: after 6.8.282
Fix from $1,950 2007-08-16
Norton Antivirus MEDIUM 6.8
CVE-2007-2955

Multiple unspecified "input validation error" vulnerabilities in multiple ActiveX controls in NavComUI.dll, as used in multiple Norton AntiVirus, Int…

Mitigation only
Fix from $1,600 2007-08-09
Client Security MEDIUM 6.0
CVE-2007-3800

Unspecified vulnerability in the Real-time scanner (RTVScan) component in Symantec AntiVirus Corporate Edition 9.0 through 10.1 and Client Security 2…

Fix: after 10.1
Fix from $1,600 2007-07-16
Client Security MEDIUM 6.9
CVE-2007-3673

Symantec symtdi.sys before 7.0.0, as distributed in Symantec AntiVirus Corporate Edition 9 through 10.1 and Client Security 2.0 through 3.1, Norton A…

Patch available
Fix from $1,600 2007-07-15
Veritas Backup Exec HIGH 7.5
CVE-2007-3509EPSS 7%

Heap-based buffer overflow in the RPC subsystem in Symantec Backup Exec for Windows Servers 10.0, 10d, and 11d allows remote attackers to cause a den…

Patch available
Fix from $1,950 2007-07-12
Norton Ghost HIGH 7.5
CVE-2007-3666

Buffer overflow in RemoteCommand.DLL in Symantec Norton Ghost 12.0 allows remote attackers to execute arbitrary code via the Connect function.

Mitigation only
Fix from $1,950 2007-07-10
Norton Ghost MEDIUM 5.0
CVE-2007-3665

Multiple unspecified vulnerabilities in FileBackup.DLL in Symantec Norton Ghost 12.0 allow remote attackers to cause a denial of service via unspecif…

No fix yet
Fix from $1,600 2007-07-10