Vulnerability index

Browse CVEs

409 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Liveupdate MEDIUM 5.0
CVE-2002-0344

Symantec LiveUpdate 1.5 and earlier in Norton Antivirus stores usernames and passwords for a local LiveUpdate server in cleartext in the registry, wh…

Fix: after 1.5
Fix from $1,600 2002-06-25
Enterprise Firewall MEDIUM 5.0
CVE-2002-0302

The Notify daemon for Symantec Enterprise Firewall (SEF) 6.5.x drops large alerts when SNMP is used as the transport, which could prevent some alerts…

Patch available
Fix from $1,600 2002-05-31
Enterprise Firewall MEDIUM 5.0
CVE-2002-0309

SMTP proxy in Symantec Enterprise Firewall (SEF) 6.5.x includes the firewall's physical interface name and address in an SMTP protocol exchange when …

Mitigation only
Fix from $1,600 2002-05-31
Liveupdate CRITICAL 9.8
CVE-2001-1125

Symantec LiveUpdate before 1.6 does not use cryptography to ensure the integrity of download files, which allows remote attackers to execute arbitrar…

Fix: 1.6+
Fix from $2,300 2001-10-05
Liveupdate MEDIUM 5.0
CVE-2001-1126

Symantec LiveUpdate 1.4 through 1.6, and possibly later versions, allows remote attackers to cause a denial of service (flood) via DNS spoofing of th…

Patch available
Fix from $1,600 2001-10-05
Norton Antivirus MEDIUM 5.0
CVE-2001-1099

The default configuration of Norton AntiVirus for Microsoft Exchange 2000 2.x allows remote attackers to identify the recipient's INBOX file path by …

No fix yet
Fix from $1,600 2001-09-07
Norton Ghost MEDIUM 5.0
CVE-2001-0598

Symantec Ghost 6.5 and earlier allows a remote attacker to create a denial of service by sending large (> 45Kb) amounts of data to the Ghost Configur…

Fix: after 6.5
Fix from $1,600 2001-08-02
Raptor Firewall HIGH 7.5
CVE-2001-0483

Configuration error in Axent Raptor Firewall 6.5 allows remote attackers to use the firewall as a proxy to access internal web resources when the htt…

Patch available
Fix from $1,950 2001-06-18
I Gear MEDIUM 5.0
CVE-2000-1007

I-gear 3.5.7 and earlier does not properly process log entries in which a URL is longer than 255 characters, which allows an attacker to cause report…

Patch available
Fix from $1,600 2000-12-11
Norton Antivirus MEDIUM 5.0
CVE-2000-0477

Buffer overflow in Norton Antivirus for Exchange (NavExchange) allows remote attackers to cause a denial of service via a .zip file that contains lon…

Patch available
Fix from $1,600 2000-06-14
Norton Antivirus MEDIUM 5.0
CVE-2000-0478

In some cases, Norton Antivirus for Exchange (NavExchange) enters a "fail-open" state which allows viruses to pass through the server.

No fix yet
Fix from $1,600 2000-06-14
Pcanywhere MEDIUM 5.0
CVE-2000-0324

pcAnywhere 8.x and 9.0 allows remote attackers to cause a denial of service via a TCP SYN scan, e.g. by nmap.

No fix yet
Fix from $1,600 2000-04-25
Pcanywhere MEDIUM 5.0
CVE-2000-0273

PCAnywhere allows remote attackers to cause a denial of service by terminating the connection before PCAnywhere provides a login prompt.

No fix yet
Fix from $1,600 2000-04-09
Pcanywhere HIGH 10.0
CVE-2000-0300EPSS 6%

The default encryption method of PcAnywhere 9.x uses weak encryption, which allows remote attackers to sniff and decrypt PcAnywhere or NT domain acco…

Patch available
Fix from $1,950 2000-04-06
Norton Antivirus MEDIUM 5.0
CVE-2000-0238

Buffer overflow in the web server for Norton AntiVirus for Internet Email Gateways allows remote attackers to cause a denial of service via a long UR…

No fix yet
Fix from $1,600 2000-03-17
Norton Antivirus MEDIUM 5.0
CVE-1999-1004

Buffer overflow in the POP server POProxy for the Norton Anti-Virus protection NAV2000 program via a large USER command.

Mitigation only
Fix from $1,600 1999-12-16
Mail Gear MEDIUM 5.0
CVE-1999-0842EPSS 7%

Symantec Mail-Gear 1.0 web interface server allows remote users to read arbitrary files via a .. (dot dot) attack.

Mitigation only
Fix from $1,600 1999-11-29
Pcanywhere MEDIUM 5.0
CVE-1999-1028

Symantec pcAnywhere 8.0 allows remote attackers to cause a denial of service (CPU utilization) via a large amount of data to port 5631.

Patch available
Fix from $1,600 1999-05-28
Norton Utilities MEDIUM 5.1
CVE-1999-1380

Symantec Norton Utilities 2.0 for Windows 95 marks the TUNEOCX.OCX ActiveX control as safe for scripting, which allows remote attackers to execute ar…

Patch available
Fix from $1,600 1997-05-04