Vulnerability index

Browse CVEs

409 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2018-18362 Norton Password Manager for Android (formerly Norton Identity Safe) may be susceptible to a cross site scripting (XSS) exploit, which is a type of is… Norton Password Manager 6.1.0.1045+ Fix from $1,6002018-12-06 HIGH 7.8 CVE-2018-12238 Norton prior to 22.15; Symantec Endpoint Protection (SEP) prior to 12.1.7454.7000 & 14.2; Symantec Endpoint Protection Small Business Edition (SEP SB… Endpoint Protection 12.1.7454.7000 / 22.15+ Fix from $1,9502018-11-29 HIGH 7.8 CVE-2018-12245 Symantec Endpoint Protection prior to 14.2 MP1 may be susceptible to a DLL Preloading vulnerability, which in this case is an issue that can occur wh… Endpoint Protection after 14.2.0.1 Fix from $1,9502018-11-29 MEDIUM 6.8 CVE-2018-12239 Norton prior to 22.15; Symantec Endpoint Protection (SEP) prior to 12.1.7454.7000 & 14.2; Symantec Endpoint Protection Small Business Edition (SEP SB… Endpoint Protection 12.1.7454.7000 / 22.15+ Fix from $1,6002018-11-29 MEDIUM 6.1 CVE-2018-12241 The Symantec Security Analytics (SA) 7.x prior to 7.3.4 Web UI is susceptible to a reflected cross-site scripting (XSS) vulnerability. A remote attac… Security Analytics 7.3.4+ Fix from $1,6002018-11-27 MEDIUM 6.1 CVE-2018-12246 Symantec Web Isolation (WI) 1.11 prior to 1.11.21 is susceptible to a reflected cross-site scripting (XSS) vulnerability. A remote attacker can targe… Web Isolation 1.11.21+ Fix from $1,6002018-10-22 CRITICAL 9.8 CVE-2018-12242 The Symantec Messaging Gateway product prior to 10.6.6 may be susceptible to an authentication bypass exploit, which is a type of issue that can allo… Messaging Gateway 10.6.6+ Fix from $2,3002018-09-19 HIGH 8.8 CVE-2018-12243 The Symantec Messaging Gateway product prior to 10.6.6 may be susceptible to a XML external entity (XXE) exploit, which is a type of issue where XML … Messaging Gateway 10.6.6+ Fix from $1,9502018-09-19 MEDIUM 5.9 CVE-2018-12240 The Norton Identity Safe product prior to 5.3.0.976 may be susceptible to a privilege escalation issue via a hard coded IV, which is a type of vulner… Norton Password Manager 5.3.0.976+ Fix from $1,6002018-08-29 HIGH 7.8 CVE-2018-5238 Norton Power Eraser (prior to 5.3.0.24) and SymDiag (prior to 2.1.242) may be susceptible to a DLL Preloading vulnerability, which is a type of issue… Norton Power Eraser 2.1.242 / 5.3.0.24+ Fix from $1,9502018-08-22 MEDIUM 6.0 CVE-2018-5235 Norton Utilities (prior to 16.0.3.44) may be susceptible to a DLL Preloading vulnerability, which is a type of issue that can occur when an applicati… Norton Utilities 16.0.3.44+ Fix from $1,6002018-08-22 HIGH 7.5 CVE-2018-5243 The Symantec Encryption Management Server (SEMS) product, prior to version 3.4.2 MP1, may be susceptible to a denial of service (DoS) exploit. A DoS … Encryption Management Server after 3.4.2 Fix from $1,9502018-08-20 HIGH 8.0 CVE-2018-5240 The Inventory Plugin for Symantec Management Agent prior to 7.6 POST HF7, 8.0 POST HF6, or 8.1 RU7 may be susceptible to a privilege escalation vulne… Inventory after 7.6 Fix from $1,9502018-07-25 MEDIUM 6.2 CVE-2018-5239 Norton App Lock prior to v1.3.0.332 can be susceptible to a bypass exploit. In this type of circumstance, the exploit can allow the user to circumven… Norton App Lock 1.3.0.332+ Fix from $1,6002018-07-16 HIGH 8.8 CVE-2018-5237 Symantec Endpoint Protection prior to 14 RU1 MP1 or 12.1 RU6 MP10 could be susceptible to a privilege escalation vulnerability, which is a type of is… Endpoint Protection after 14.0 Fix from $1,9502018-06-20 MEDIUM 5.3 CVE-2018-5236 Symantec Endpoint Protection prior to 14 RU1 MP1 or 12.1 RU6 MP10 may be susceptible to a race condition (or race hazard). This type of issue occurs … Endpoint Protection after 14.0 Fix from $1,6002018-06-20 MEDIUM 6.2 CVE-2018-5242 Norton App Lock prior to version 1.3.0.329 can be susceptible to a bypass exploit. In this type of circumstance, the exploit can allow the user to ci… Norton App Lock 1.3.0.329+ Fix from $1,6002018-06-13 HIGH 8.0 CVE-2018-5234EPSS 17% The Norton Core router prior to v237 may be susceptible to a command injection exploit. This is a type of attack in which the goal is execution of ar… Norton Core Firmware 237+ Fix from $1,9502018-04-30 HIGH 8.0 CVE-2017-6323 The Symantec Management Console prior to ITMS 8.1 RU1, ITMS 8.0_POST_HF6, and ITMS 7.6_POST_HF7 has an issue whereby XML input containing a reference… Management Console 8.1+ Fix from $1,9502018-04-16 HIGH 7.8 CVE-2016-9094 Symantec Endpoint Protection clients place detected malware in quarantine as part of the intended product functionality. The quarantine logs can be e… Endpoint Protection after 14.0 Fix from $1,9502018-04-16 HIGH 7.0 CVE-2016-9093 A version of the SymEvent Driver that shipped with Symantec Endpoint Protection 12.1 RU6 MP6 and earlier fails to properly sanitize logged-in user in… Endpoint Protection after 12.1.6 Fix from $1,9502018-04-16 MEDIUM 6.7 CVE-2017-15534 The Norton App Lock prior to version 1.3.0.13 can be susceptible to an authentication bypass exploit. In this type of circumstance, the exploit can a… Norton App Lock 1.3.0.13+ Fix from $1,6002018-03-26 MEDIUM 6.5 CVE-2010-0109 DBManager in Symantec Altiris Deployment Solution 6.9.x before DS 6.9 SP4 allows remote attackers to cause a denial of service via a crafted request. Altiris Deployment Solution Patch available Fix from $1,6002018-02-19 MEDIUM 5.5 CVE-2011-3477 GEAR Software CD DVD Filter driver (aka GEARAspiWDM.sys), as used in Symantec Backup Exec System Recovery 8.5 and BESR 2010, Symantec System Recovery… Backup Exec System Recovery after 15.0 Fix from $1,6002018-02-19 CRITICAL 9.8 CVE-2017-15531 Symantec Reporter 9.5 prior to 9.5.4.1 and 10.1 prior to 10.1.5.5 does not restrict excessive authentication attempts for management interface users.… Reporter 9.5.4.1+ Fix from $2,3002018-01-23 MEDIUM 5.7 CVE-2017-15532 Prior to 10.6.4, Symantec Messaging Gateway may be susceptible to a path traversal attack (also known as directory traversal). These types of attacks… Messaging Gateway 10.6.4+ Fix from $1,6002017-12-20 MEDIUM 6.2 CVE-2017-15529 Prior to 4.4.1.10, the Norton Family Android App can be susceptible to a Denial of Service (DoS) exploit. A DoS attack is a type of attack whereby th… Norton Family 4.4.1.10+ Fix from $1,6002017-12-13 MEDIUM 6.8 CVE-2017-15527 Prior to ITMS 8.1 RU4, the Symantec Management Console can be susceptible to a directory traversal exploit, which is a type of attack that can occur … Management Console 8.1+ Fix from $1,6002017-11-20 MEDIUM 6.8 CVE-2017-15526 Prior to SEE v11.1.3MP1, Symantec Endpoint Encryption can be susceptible to a null pointer de-reference issue, which can result in a NullPointerExcep… Endpoint Encryption after 11.1.3 Fix from $1,6002017-11-13 HIGH 7.8 CVE-2017-13681 Symantec Endpoint Protection prior to SEP 12.1 RU6 MP9 could be susceptible to a privilege escalation vulnerability, which is a type of issue that al… Endpoint Protection 12.1+ Fix from $1,9502017-11-06