Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.8
CVE-2007-1792
libdayzero.dll in the Filter Hub Service (filter-hub.exe) in Symantec Mail Security for SMTP before 5.0.1 Patch 181 and Mail Security Appliance befor…
Mail Security
Patch available
MEDIUM 5.0
CVE-2007-3132
Multiple vulnerabilities in Symantec Ghost Solution Suite 2.0.0 and earlier, with Ghost 8.0.992 and possibly other versions, allow remote attackers t…
Ghost Solutions Suite
after 2.0
HIGH 9.0
CVE-2007-3095
Unspecified vulnerability in Symantec Reporting Server 1.0.197.0, and other versions before 1.0.224.0, as used in Symantec Client Security 3.1 and la…
Client Security
after 1.0.197.0
HIGH 7.5
CVE-2007-3021
Symantec Reporting Server 1.0.197.0, and other versions before 1.0.224.0, as used in Symantec Client Security 3.1 and later, and Symantec AntiVirus C…
Client Security
after 1.0.197.0
HIGH 9.3
CVE-2007-2279EPSS 6%
The Scheduler Service (VxSchedService.exe) in Symantec Storage Foundation for Windows 5.0 allows remote attackers to bypass authentication and execut…
Veritas Storage Foundation
Patch available
MEDIUM 5.0
CVE-2007-1593
The administrative service in Symantec Veritas Volume Replicator (VVR) for Windows 3.1 through 4.3, and VVR for Unix 3.5 through 5.0, in Symantec Sto…
Veritas Volume Replicator
Patch available
HIGH 10.0
CVE-2007-1689EPSS 64%
Buffer overflow in the ISAlertDataCOM ActiveX control in ISLALERT.DLL for Norton Personal Firewall 2004 and Internet Security 2004 allows remote atta…
Norton Internet Security
Patch available
HIGH 8.5
CVE-2006-3456
The Symantec NAVOPTS.DLL ActiveX control (aka Symantec.Norton.AntiVirus.NAVOptions) 12.2.0.13, as used in Norton AntiVirus, Internet Security, and Sy…
Norton Antivirus
Mitigation only
HIGH 10.0
CVE-2007-2375EPSS 5%
The agent remote upgrade interface in Symantec Enterprise Security Manager (ESM) before 20070405 does not verify the authenticity of upgrades, which …
Enterprise Security Manager
Patch available
HIGH 7.2
CVE-2007-2359
Buffer overflow in Ghost Service Manager, as used in Symantec Norton Ghost, Norton Save & Recovery, LiveState Recovery, and BackupExec System Recover…
Backupexec System Recovery
Mitigation only
MEDIUM 6.8
CVE-2007-2360
Symantec Norton Ghost, Norton Save & Recovery, LiveState Recovery, and BackupExec System Recovery before 20070426, when remote backups of restore poi…
Backupexec System Recovery
Mitigation only
HIGH 9.3
CVE-2007-1252EPSS 7%
Buffer overflow in Symantec Mail Security for SMTP 5.0 before Patch 175 allows remote attackers to cause a denial of service (crash) and possibly exe…
Mail Security
Patch available
HIGH 10.0
CVE-2006-4902
The NetBackup bpcd daemon (bpcd.exe) in Symantec Veritas NetBackup 5.0 before 5.0_MP7, 5.1 before 5.1_MP6, and 6.0 before 6.0_MP4 does not properly c…
Veritas Netbackup Client
Patch available
HIGH 10.0
CVE-2006-5822EPSS 12%
Stack-based buffer overflow in the NetBackup bpcd daemon (bpcd.exe) in Symantec Veritas NetBackup 5.0 before 5.0_MP7, 5.1 before 5.1_MP6, and 6.0 bef…
Veritas Netbackup Client
Patch available
HIGH 10.0
CVE-2006-6222EPSS 12%
Stack-based buffer overflow in the NetBackup bpcd daemon (bpcd.exe) in Symantec Veritas NetBackup 5.0 before 5.0_MP7, 5.1 before 5.1_MP6, and 6.0 bef…
Veritas Netbackup Client
Patch available
MEDIUM 5.0
CVE-2006-5545
Premium Antispam in Symantec Mail Security for Domino Server 5.1.x before 5.1.2.28 does not filter certain SMTP address formats, which allows remote …
Mail Security
Patch available
MEDIUM 5.1
CVE-2006-5403EPSS 6%
Stack-based buffer overflow in an ActiveX control used in Symantec Automated Support Assistant, as used in Norton AntiVirus, Internet Security, and S…
Automated Support Assistant
Mitigation only
HIGH 7.2
CVE-2006-3454
Multiple format string vulnerabilities in Symantec AntiVirus Corporate Edition 8.1 up to 10.0, and Client Security 1.x up to 3.0, allow local users t…
Client Security
Patch available
MEDIUM 5.0
CVE-2006-4562
The proxy DNS service in Symantec Gateway Security (SGS) allows remote attackers to make arbitrary DNS queries to third-party DNS servers, while hidi…
Gateway Security
Mitigation only
MEDIUM 5.0
CVE-2006-4314
The manager server in Symantec Enterprise Security Manager (ESM) 6 and 6.5.x allows remote attackers to cause a denial of service (hang) via a malfor…
Enterprise Security Manager
Patch available
HIGH 7.6
CVE-2006-4013
Multiple directory traversal vulnerabilities in Symantec Brightmail AntiSpam (SBAS) before 6.0.4, when the Control Center is allowed to connect from …
Brightmail Antispam
Patch available
MEDIUM 5.0
CVE-2006-4014
Symantec Brightmail AntiSpam (SBAS) before 6.0.4, when the Control Center is allowed to connect from any computer, allows remote attackers to cause a…
Brightmail Antispam
Patch available
HIGH 7.2
CVE-2006-3784
Symantec pcAnywhere 12.5 uses weak default permissions for the "Symantec\pcAnywhere\Hosts" folder, which allows local users to gain privileges by ins…
Pcanywhere
Mitigation only
HIGH 10.0
CVE-2006-2630EPSS 74%
Stack-based buffer overflow in Symantec Antivirus 10.1 and Client Security 3.1 allows remote attackers to execute arbitrary code via unknown attack v…
Client Security
Patch available
MEDIUM 5.0
CVE-2006-2341
The HTTP proxy in Symantec Gateway Security 5000 Series 2.0.1 and 3.0, and Enterprise Firewall 8.0, when NAT is being used, allows remote attackers t…
Enterprise Firewall
Patch available
HIGH 10.0
CVE-2006-0230EPSS 16%
Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, uses a client-side check to verify a password, which allows remote attacke…
Antivirus Scan Engine
Patch available
MEDIUM 6.4
CVE-2006-0231
Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, uses the same private DSA key for each installation, which allows remote a…
Antivirus Scan Engine
Patch available
MEDIUM 5.0
CVE-2006-0232
Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, stores sensitive log and virus definition files under the web root with in…
Antivirus Scan Engine
Patch available
MEDIUM 6.8
CVE-2006-1836
Untrusted search path vulnerability in unspecified components in Symantec LiveUpdate for Macintosh 3.0.0 through 3.5.0 do not set the execution path,…
Liveupdate
Patch available
HIGH 7.5
CVE-2006-0522
SQL injection vulnerability in the Authentication Servlet in Symantec Sygate Management Server (SMS) version 4.1 build 1417 and earlier allows remote…
Sygate Management Server
after 4.1_mr_2_build_1417_english