Vulnerability index

Browse CVEs

409 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Norton App Lock HIGH 7.1
CVE-2016-6591

A security bypass vulnerability exists in Symantec Norton App Lock 1.0.3.186 and earlier if application pinning is enabled, which could let a local m…

Fix: after 1.0.3.186
Fix from $1,950 2020-01-08
It Management Suite MEDIUM 6.5
CVE-2016-6589

A Denial of Service vulnerability exists in the ITMS workflow process manager login window in Symantec IT Management Suite 8.0.

No fix yet
Fix from $1,600 2020-01-08
Messaging Gateway HIGH 7.3
CVE-2019-18379

Symantec Messaging Gateway, prior to 10.7.3, may be susceptible to a server-side request forgery (SSRF) exploit, which is a type of issue that can le…

Fix: 10.7.3+
Fix from $1,950 2019-12-11
Messaging Gateway HIGH 7.2
CVE-2019-18377

Symantec Messaging Gateway, prior to 10.7.3, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker…

Fix: 10.7.3+
Fix from $1,950 2019-12-11
Industrial Control System Protection MEDIUM 6.5
CVE-2019-18380

Symantec Industrial Control System Protection (ICSP), versions 6.x.x, may be susceptible to an unauthorized access issue that could potentially allow…

Fix: 6.1.1.123+
Fix from $1,600 2019-12-09
Norton App Lock MEDIUM 5.6
CVE-2019-18373

Norton App Lock, prior to 1.4.0.503, may be susceptible to a bypass exploit. In this type of circumstance, the exploit can allow the user to circumve…

Fix: 1.4.0.503+
Fix from $1,600 2019-11-18
Endpoint Protection HIGH 7.8
CVE-2019-12757

Symantec Endpoint Protection (SEP), prior to 14.2 RU2 & 12.1 RU6 MP10 and Symantec Endpoint Protection Small Business Edition (SEP SBE) prior to 12.1…

Mitigation only
Fix from $1,950 2019-11-15
Endpoint Protection Manager HIGH 7.8
CVE-2019-12759

Symantec Endpoint Protection Manager (SEPM) and Symantec Mail Security for MS Exchange (SMSMSE), prior to versions 14.2 RU2 and 7.5.x respectively, m…

Fix: 7.5+
Fix from $1,950 2019-11-15
Endpoint Protection HIGH 7.8
CVE-2019-18372

Symantec Endpoint Protection, prior to 14.2 RU2, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an atta…

Fix: after 14.2
Fix from $1,950 2019-11-15
Endpoint Protection MEDIUM 6.7
CVE-2019-12758

Symantec Endpoint Protection, prior to 14.2 RU2, may be susceptible to an unsigned code execution vulnerability, which may allow an individual to exe…

Fix: after 14.2
Fix from $1,600 2019-11-15
Endpoint Protection Manager HIGH 7.8
CVE-2018-18368

Symantec Endpoint Protection Manager (SEPM), prior to 14.2 RU1, may be susceptible to a privilege escalation vulnerability, which is a type of issue …

Fix: after 14.2
Fix from $1,950 2019-11-15
Sonar MEDIUM 6.1
CVE-2019-12752

The Symantec SONAR component, prior to 12.0.2, may be susceptible to a tamper protection bypass vulnerability which could potentially allow an attack…

Fix: 12.0.2+
Fix from $1,600 2019-11-01
Norton Password Manager MEDIUM 5.5
CVE-2019-12755

Norton Password Manager, prior to 6.5.0.2104, may be susceptible to an information disclosure issue, which is a type of vulnerability whereby there i…

Fix: 6.5.0.2104+
Fix from $1,600 2019-09-17
Management Center MEDIUM 6.5
CVE-2019-9697

An information disclosure vulnerability in the Management Center (MC) REST API 2.0, 2.1, and 2.2 prior to 2.2.2.1 allows a malicious authenticated us…

Fix: 2.2.2.1+
Fix from $1,600 2019-08-30
Endpoint Protection HIGH 7.8
CVE-2019-12750

Symantec Endpoint Protection, prior to 14.2 RU1 & 12.1 RU6 MP10 and Symantec Endpoint Protection Small Business Edition, prior to 12.1 RU6 MP10c (12.…

No fix yet
Fix from $1,950 2019-07-31
Message Gateway CRITICAL 9.8
CVE-2019-12751

Symantec Messaging Gateway, prior to 10.7.1, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker…

Fix: 10.7.1+
Fix from $2,300 2019-07-11
Endpoint Encryption HIGH 7.8
CVE-2019-9702

Symantec Endpoint Encryption, prior to SEE 11.3.0, may be susceptible to a privilege escalation vulnerability, which is a type of issue that allows a…

Fix: 11.3.0+
Fix from $1,950 2019-07-01
Endpoint Encryption HIGH 7.8
CVE-2019-9703

Symantec Endpoint Encryption, prior to SEE 11.3.0, may be susceptible to a privilege escalation vulnerability, which is a type of issue that allows a…

Fix: 11.3.0+
Fix from $1,950 2019-07-01
Antivirus Engine MEDIUM 5.5
CVE-2019-9698

Symantec AV Engine, prior to 13.0.9r17, may be susceptible to an arbitrary file deletion issue, which is a type of vulnerability that could allow an …

Fix: 13.0.9r17+
Fix from $1,600 2019-05-08
Endpoint Protection Manager HIGH 7.8
CVE-2018-18367

Symantec Endpoint Protection Manager (SEPM) prior to and including 12.1 RU6 MP9 and prior to 14.2 RU1 may be susceptible to a DLL Preloading vulnerab…

Mitigation only
Fix from $1,950 2019-04-25
Endpoint Protection MEDIUM 6.5
CVE-2018-18366

Symantec Norton Security prior to 22.16.3, SEP (Windows client) prior to and including 12.1 RU6 MP9, and prior to 14.2 RU1, SEP SBE prior to Cloud Ag…

Fix: 3.00.31.2817 / 22.16.3+
Fix from $1,600 2019-04-25
Endpoint Protection MEDIUM 6.3
CVE-2018-12244

SEP (Mac client) prior to and including 12.1 RU6 MP9 and prior to 14.2 RU1 may be susceptible to a CSV/DDE injection (also known as formula injection…

Mitigation only
Fix from $1,600 2019-04-25
Endpoint Protection HIGH 7.8
CVE-2018-18369

Norton Security (Windows client) prior to 22.16.3 and SEP SBE (Windows client) prior to Cloud Agent 3.00.31.2817, NIS-22.15.2.22 & SEP-12.1.7484.7002…

Fix: 3.00.31.2817 / 22.16.3+
Fix from $1,950 2019-04-25
Endpoint Encryption HIGH 7.8
CVE-2019-9694

Symantec Endpoint Encryption prior to SEE 11.2.1 MP1 may be susceptible to a Privilege Escalation vulnerability, which is a type of issue whereby an …

Mitigation only
Fix from $1,950 2019-04-10
Vip Enterprise Gateway MEDIUM 6.1
CVE-2019-9696

Symantec VIP Enterprise Gateway (all versions) may be susceptible to a cross-site scripting (XSS) exploit, which is a type of issue that can enable a…

Fix: 9.8.4+
Fix from $1,600 2019-04-09
Norton Password Manager HIGH 7.5
CVE-2018-18365

Norton Password Manager may be susceptible to an address spoofing issue. This type of issue may allow an attacker to disguise their origin IP address…

Fix: 6.2.0.1078 / 6.2.309+
Fix from $1,950 2019-04-09
Norton Core Firmware MEDIUM 6.8
CVE-2019-9695

Norton Core prior to v278 may be susceptible to an arbitrary code execution issue, which is a type of vulnerability that has the potential of allowin…

Fix: 278+
Fix from $1,600 2019-03-29
Ghost Solution Suite HIGH 7.3
CVE-2018-18364

Symantec Ghost Solution Suite (GSS) versions prior to 3.3 RU1 may be susceptible to a DLL hijacking vulnerability, which is a type of issue whereby a…

Mitigation only
Fix from $1,950 2019-02-08
Reporter HIGH 7.2
CVE-2018-12237

The Symantec Reporter CLI 10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8 is susceptible to an OS command injection vulnerability. An authenticated…

Fix: 10.1.5.6 / 10.2.1.8+
Fix from $1,950 2019-01-24
Norton App Lock MEDIUM 6.2
CVE-2018-18363

Norton App Lock prior to 1.4.0.445 can be susceptible to a bypass exploit. In this type of circumstance, the exploit can allow the user to circumvent…

Fix: 1.4.0.445+
Fix from $1,600 2019-01-24