Vulnerabilities > Symantec > Encryption Management Server > 3.3.0

DATE CVE VULNERABILITY TITLE RISK
2018-08-20 CVE-2018-5243 Resource Exhaustion vulnerability in Symantec Encryption Management Server
The Symantec Encryption Management Server (SEMS) product, prior to version 3.4.2 MP1, may be susceptible to a denial of service (DoS) exploit.
network
low complexity
symantec CWE-400
5.0
2014-02-07 CVE-2014-1643 Permissions, Privileges, and Access Controls vulnerability in Symantec Encryption Management Server 3.3.0/3.3.1
The Web Email Protection component in Symantec Encryption Management Server (aka PGP Universal Server) before 3.3.2 allows remote authenticated users to read the stored outbound e-mail messages of arbitrary users via a modified URL.
network
low complexity
symantec CWE-264
4.0
2013-07-31 CVE-2013-4674 Cross-Site Scripting vulnerability in Symantec Encryption Management Server and PGP Universal Server
Cross-site scripting (XSS) vulnerability in the Web Email Protection component in Symantec Encryption Management Server (formerly Symantec PGP Universal Server) before 3.3.0 MP2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted encrypted e-mail attachment.
network
symantec CWE-79
4.3