Vulnerabilities > Symantec

DATE CVE VULNERABILITY TITLE RISK
2017-10-23 CVE-2017-13682 Missing Release of Resource after Effective Lifetime vulnerability in Symantec Encryption Desktop
In Symantec Encryption Desktop before SED 10.4.1 MP2HF1, a kernel memory leak is a type of resource leak that can occur when a computer program incorrectly manages memory allocations in such a way that memory which is no longer needed is not released.
low complexity
symantec CWE-772
5.7
2017-10-10 CVE-2017-13679 Unspecified vulnerability in Symantec Encryption Desktop 10.3.2/10.4.1
A denial of service (DoS) attack in Symantec Encryption Desktop before SED 10.4.1 MP2HF1 allows remote attackers to make a particular machine or network resource unavailable to its intended users by temporarily or indefinitely disrupting services of a specific host within a network.
high complexity
symantec
4.2
2017-10-10 CVE-2017-13675 Unspecified vulnerability in Symantec Endpoint Encryption
A denial of service (DoS) attack in Symantec Endpoint Encryption before SEE 11.1.3HF2 allows remote attackers to make a particular machine or network resource unavailable to its intended users by temporarily or indefinitely disrupting services of a specific host within a network.
high complexity
symantec
4.2
2017-09-13 CVE-2017-6330 Unspecified vulnerability in Symantec Encryption Desktop 10.3.2/10.4.0/10.4.1
Symantec Encryption Desktop before SED 10.4.1MP2 can allow remote attackers to cause a denial of service (resource consumption) via crafted web requests."
network
low complexity
symantec
6.5
2017-09-11 CVE-2015-4523 Permissions, Privileges, and Access Controls vulnerability in Symantec Malware Analysis Appliance and Malware Analyzer G2
Blue Coat Malware Analysis Appliance (MAA) before 4.2.5 and Malware Analyzer G2 allow remote attackers to bypass a virtual machine protection mechanism and consequently write to arbitrary files, cause a denial of service (host reboot or reset to factory defaults), or execute arbitrary code via vectors related to saving files during analysis.
local
low complexity
symantec CWE-264
critical
9.3
2017-09-01 CVE-2017-13674 Unspecified vulnerability in Symantec Proxyclient 3.4
Symantec ProxyClient 3.4 for Windows is susceptible to a privilege escalation vulnerability.
local
low complexity
symantec
7.8
2017-08-21 CVE-2017-6329 Uncontrolled Search Path Element vulnerability in Symantec VIP Access for Desktop 2.2.3
Symantec VIP Access for Desktop prior to 2.2.4 can be susceptible to a DLL Pre-Loading vulnerability.
local
low complexity
symantec CWE-427
7.8
2017-08-11 CVE-2017-6328 Cross-Site Request Forgery (CSRF) vulnerability in Symantec Message Gateway
The Symantec Messaging Gateway before 10.6.3-267 can encounter an issue of cross site request forgery (also known as one-click attack and is abbreviated as CSRF or XSRF), which is a type of malicious exploit of a website where unauthorized commands are transmitted from a user that the web application trusts.
network
low complexity
symantec CWE-352
8.8
2017-08-11 CVE-2017-6327 Unspecified vulnerability in Symantec Message Gateway
The Symantec Messaging Gateway before 10.6.3-267 can encounter an issue of remote code execution, which describes a situation whereby an individual may obtain the ability to execute commands remotely on a target machine or in a target process.
network
low complexity
symantec
8.8
2017-06-26 CVE-2017-6326 Unspecified vulnerability in Symantec Messaging Gateway
The Symantec Messaging Gateway can encounter an issue of remote code execution, which describes a situation whereby an individual may obtain the ability to execute commands remotely on a target machine or in a target process.
network
low complexity
symantec
critical
10.0