Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 6.1
CVE-2018-18362
Norton Password Manager for Android (formerly Norton Identity Safe) may be susceptible to a cross site scripting (XSS) exploit, which is a type of is…
Norton Password Manager
6.1.0.1045+
HIGH 7.8
CVE-2018-12238
Norton prior to 22.15; Symantec Endpoint Protection (SEP) prior to 12.1.7454.7000 & 14.2; Symantec Endpoint Protection Small Business Edition (SEP SB…
Endpoint Protection
12.1.7454.7000 / 22.15+
HIGH 7.8
CVE-2018-12245
Symantec Endpoint Protection prior to 14.2 MP1 may be susceptible to a DLL Preloading vulnerability, which in this case is an issue that can occur wh…
Endpoint Protection
after 14.2.0.1
MEDIUM 6.8
CVE-2018-12239
Norton prior to 22.15; Symantec Endpoint Protection (SEP) prior to 12.1.7454.7000 & 14.2; Symantec Endpoint Protection Small Business Edition (SEP SB…
Endpoint Protection
12.1.7454.7000 / 22.15+
MEDIUM 6.1
CVE-2018-12241
The Symantec Security Analytics (SA) 7.x prior to 7.3.4 Web UI is susceptible to a reflected cross-site scripting (XSS) vulnerability. A remote attac…
Security Analytics
7.3.4+
MEDIUM 6.1
CVE-2018-12246
Symantec Web Isolation (WI) 1.11 prior to 1.11.21 is susceptible to a reflected cross-site scripting (XSS) vulnerability. A remote attacker can targe…
Web Isolation
1.11.21+
CRITICAL 9.8
CVE-2018-12242
The Symantec Messaging Gateway product prior to 10.6.6 may be susceptible to an authentication bypass exploit, which is a type of issue that can allo…
Messaging Gateway
10.6.6+
HIGH 8.8
CVE-2018-12243
The Symantec Messaging Gateway product prior to 10.6.6 may be susceptible to a XML external entity (XXE) exploit, which is a type of issue where XML …
Messaging Gateway
10.6.6+
MEDIUM 5.9
CVE-2018-12240
The Norton Identity Safe product prior to 5.3.0.976 may be susceptible to a privilege escalation issue via a hard coded IV, which is a type of vulner…
Norton Password Manager
5.3.0.976+
HIGH 7.8
CVE-2018-5238
Norton Power Eraser (prior to 5.3.0.24) and SymDiag (prior to 2.1.242) may be susceptible to a DLL Preloading vulnerability, which is a type of issue…
Norton Power Eraser
2.1.242 / 5.3.0.24+
MEDIUM 6.0
CVE-2018-5235
Norton Utilities (prior to 16.0.3.44) may be susceptible to a DLL Preloading vulnerability, which is a type of issue that can occur when an applicati…
Norton Utilities
16.0.3.44+
HIGH 7.5
CVE-2018-5243
The Symantec Encryption Management Server (SEMS) product, prior to version 3.4.2 MP1, may be susceptible to a denial of service (DoS) exploit. A DoS …
Encryption Management Server
after 3.4.2
HIGH 8.0
CVE-2018-5240
The Inventory Plugin for Symantec Management Agent prior to 7.6 POST HF7, 8.0 POST HF6, or 8.1 RU7 may be susceptible to a privilege escalation vulne…
Inventory
after 7.6
MEDIUM 6.2
CVE-2018-5239
Norton App Lock prior to v1.3.0.332 can be susceptible to a bypass exploit. In this type of circumstance, the exploit can allow the user to circumven…
Norton App Lock
1.3.0.332+
HIGH 8.8
CVE-2018-5237
Symantec Endpoint Protection prior to 14 RU1 MP1 or 12.1 RU6 MP10 could be susceptible to a privilege escalation vulnerability, which is a type of is…
Endpoint Protection
after 14.0
MEDIUM 5.3
CVE-2018-5236
Symantec Endpoint Protection prior to 14 RU1 MP1 or 12.1 RU6 MP10 may be susceptible to a race condition (or race hazard). This type of issue occurs …
Endpoint Protection
after 14.0
MEDIUM 6.2
CVE-2018-5242
Norton App Lock prior to version 1.3.0.329 can be susceptible to a bypass exploit. In this type of circumstance, the exploit can allow the user to ci…
Norton App Lock
1.3.0.329+
HIGH 8.0
CVE-2018-5234EPSS 17%
The Norton Core router prior to v237 may be susceptible to a command injection exploit. This is a type of attack in which the goal is execution of ar…
Norton Core Firmware
237+
HIGH 8.0
CVE-2017-6323
The Symantec Management Console prior to ITMS 8.1 RU1, ITMS 8.0_POST_HF6, and ITMS 7.6_POST_HF7 has an issue whereby XML input containing a reference…
Management Console
8.1+
HIGH 7.8
CVE-2016-9094
Symantec Endpoint Protection clients place detected malware in quarantine as part of the intended product functionality. The quarantine logs can be e…
Endpoint Protection
after 14.0
HIGH 7.0
CVE-2016-9093
A version of the SymEvent Driver that shipped with Symantec Endpoint Protection 12.1 RU6 MP6 and earlier fails to properly sanitize logged-in user in…
Endpoint Protection
after 12.1.6
MEDIUM 6.7
CVE-2017-15534
The Norton App Lock prior to version 1.3.0.13 can be susceptible to an authentication bypass exploit. In this type of circumstance, the exploit can a…
Norton App Lock
1.3.0.13+
MEDIUM 6.5
CVE-2010-0109
DBManager in Symantec Altiris Deployment Solution 6.9.x before DS 6.9 SP4 allows remote attackers to cause a denial of service via a crafted request.
Altiris Deployment Solution
Patch available
MEDIUM 5.5
CVE-2011-3477
GEAR Software CD DVD Filter driver (aka GEARAspiWDM.sys), as used in Symantec Backup Exec System Recovery 8.5 and BESR 2010, Symantec System Recovery…
Backup Exec System Recovery
after 15.0
CRITICAL 9.8
CVE-2017-15531
Symantec Reporter 9.5 prior to 9.5.4.1 and 10.1 prior to 10.1.5.5 does not restrict excessive authentication attempts for management interface users.…
Reporter
9.5.4.1+
MEDIUM 5.7
CVE-2017-15532
Prior to 10.6.4, Symantec Messaging Gateway may be susceptible to a path traversal attack (also known as directory traversal). These types of attacks…
Messaging Gateway
10.6.4+
MEDIUM 6.2
CVE-2017-15529
Prior to 4.4.1.10, the Norton Family Android App can be susceptible to a Denial of Service (DoS) exploit. A DoS attack is a type of attack whereby th…
Norton Family
4.4.1.10+
MEDIUM 6.8
CVE-2017-15527
Prior to ITMS 8.1 RU4, the Symantec Management Console can be susceptible to a directory traversal exploit, which is a type of attack that can occur …
Management Console
8.1+
MEDIUM 6.8
CVE-2017-15526
Prior to SEE v11.1.3MP1, Symantec Endpoint Encryption can be susceptible to a null pointer de-reference issue, which can result in a NullPointerExcep…
Endpoint Encryption
after 11.1.3
HIGH 7.8
CVE-2017-13681
Symantec Endpoint Protection prior to SEP 12.1 RU6 MP9 could be susceptible to a privilege escalation vulnerability, which is a type of issue that al…
Endpoint Protection
12.1+