Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Desktop HIGH 9.3
CVE-2010-3397

Untrusted search path vulnerability in PGP Desktop 9.9.0 Build 397, 9.10.x, 10.0.0 Build 2732, and probably other versions allows local users, and po…

Mitigation only
Fix from $1,950 2010-09-15
Desktop HIGH 7.2
CVE-2009-0681

PGP Desktop before 9.10 allows local users to (1) cause a denial of service (crash) via a crafted IOCTL request to pgpdisk.sys, and (2) cause a denia…

Fix: after 9.9.0
Fix from $1,950 2009-04-15
Corporate Desktop HIGH 7.1
CVE-2007-0603EPSS 5%

PGP Desktop before 9.5.1 does not validate data objects received over the (1) \pipe\pgpserv named pipe for PGPServ.exe or the (2) \pipe\pgpsdkserv na…

Mitigation only
Fix from $1,950 2007-01-30
Personal Privacy HIGH 7.5
CVE-2002-2069

PGP 6.x and 7.x does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows attackers to recover sens…

Fix: after 7.1.1
Fix from $1,950 2002-12-31
Personal Privacy MEDIUM 5.5
CVE-2002-1696

Microsoft Outlook plug-in PGP version 7.0, 7.0.3, and 7.0.4 silently saves a decrypted copy of a message to hard disk when "Automatically decrypt/ver…

Mitigation only
Fix from $1,600 2002-12-31
Corporate Desktop HIGH 7.5
CVE-2002-0850

Buffer overflow in PGP Corporate Desktop 7.1.1 allows remote attackers to execute arbitrary code via an encrypted document that has a long filename w…

Patch available
Fix from $1,950 2002-10-04
Corporate Desktop MEDIUM 5.5
CVE-2002-0788

An interaction between PGP 7.0.3 with the "wipe deleted files" option, when used on Windows Encrypted File System (EFS), creates a cleartext temporar…

Patch available
Fix from $1,600 2002-08-12
Desktop Security HIGH 7.5
CVE-2002-0685

Heap-based buffer overflow in the message decoding functionality for PGP Outlook Encryption Plug-In, as used in NAI PGP Desktop Security 7.0.4, Perso…

Patch available
Fix from $1,950 2002-07-23
Keyserver HIGH 10.0
CVE-2001-1252

Network Associates PGP Keyserver 7.0 allows remote attackers to bypass authentication and access the administrative web interface via URLs that direc…

Patch available
Fix from $1,950 2001-09-28
Corporate Desktop HIGH 7.5
CVE-2001-1016

PGP Corporate Desktop before 7.1, Personal Security before 7.0.3, Freeware before 7.0.3, and E-Business Server before 7.1 does not properly display w…

Patch available
Fix from $1,950 2001-09-04
Keyserver HIGH 7.5
CVE-2001-1320EPSS 68%

Network Associates PGP Keyserver 7.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via exceptional…

Patch available
Fix from $1,950 2001-07-16
Pgp MEDIUM 5.0
CVE-2000-0678

PGP 5.5.x through 6.5.3 does not properly check if an Additional Decryption Key (ADK) is stored in the signed portion of a public certificate, which …

Patch available
Fix from $1,600 2000-10-20
Certificate Server MEDIUM 5.0
CVE-2000-0543

The command port for PGP Certificate Server 2.5.0 and 2.5.1 allows remote attackers to cause a denial of service if their hostname does not have a re…

Patch available
Fix from $1,600 2000-06-14