Broadcom
broadcom
645 CVEs • 275 products
Products (275)
Click to collapseToggle
Products (275)
Click to collapse
CVEs (645)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Broadcom 1Privileged Access Manager Jun 17, 2026 Jun 18, 2018 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 An improper authentication vulnerability in CA Privileged Access Manager 2.x allows attackers to spoof IP addresses in a log file. |
1Broadcom 1Privileged Access Manager Jun 17, 2026 Jun 18, 2018 N/A· v4 8.8 HIGH· v3 9.0 HIGH· v2 An input validation vulnerability in CA Privileged Access Manager 2.x allows unprivileged users to execute arbitrary commands by passing specially crafted arguments to the update_crld script. |
1Broadcom 1Privileged Access Manager Jun 17, 2026 Jun 18, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An authentication bypass vulnerability in CA Privileged Access Manager 2.8.2 and earlier allows remote attackers to execute arbitrary code or commands by poisoning a configuration file. |
1Broadcom 1Privileged Access Manager Jun 17, 2026 Jun 18, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An authentication bypass vulnerability in CA Privileged Access Manager 2.8.2 and earlier allows remote attackers to execute arbitrary commands with specially crafted requests. |
2Broadcom Xceedium2Privileged Access Manager XsuiteNov 21, 2024 Jun 18, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An improper input validation vulnerability in CA Privileged Access Manager 2.4.4.4 and earlier allows remote attackers to execute arbitrary commands. |
1Broadcom 2Advanced Secure Gateway Symantec ProxysgNov 21, 2024 May 29, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Symantec Advanced Secure Gateway (ASG) 6.6 and 6.7, and ProxySG 6.5, 6.6, and 6.7 are susceptible to a SAML authentication bypass vulnerability. The products can be configured with a SAML authentication realm to authenti...Show more |
1Broadcom 1Symantec Intelligencecenter Nov 21, 2024 May 17, 2018 N/A· v4 5.9 MEDIUM· v3 4.3 MEDIUM· v2 Symantec IntelligenceCenter 3.3 is vulnerable to the Return of the Bleichenbacher Oracle Threat (ROBOT) attack. A remote attacker, who has captured a pre-recorded SSL session inspected by SSLV, can establish large number...Show more |
1Broadcom 1Ssl Visibility Appliance Nov 21, 2024 May 17, 2018 N/A· v4 5.9 MEDIUM· v3 4.3 MEDIUM· v2 Symantec SSL Visibility (SSLV) 3.8.4FC, 3.10 prior to 3.10.4.1, 3.11, and 3.12 prior to 3.12.2.1 are vulnerable to the Return of the Bleichenbacher Oracle Threat (ROBOT) attack. All affected SSLV versions act as weak ora...Show more |
4Broadcom Pivotal SoftwareVmware+1 more5Spring Data Commons Spring Data CommonsSpring Data Rest+2 moreJun 26, 2026 May 11, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Spring Data Commons, versions 1.13 prior to 1.13.12 and 2.0 prior to 2.0.7, used in combination with XMLBeam 1.4.14 or earlier versions, contains a property binder vulnerability caused by improper restriction of XML exte...Show more |
3Broadcom Pivotal SoftwareVmware4Spring Data Commons Spring Data CommonsSpring Data Rest+1 moreJun 26, 2026 Apr 18, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Spring Data Commons, versions 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property path parser vulnerability caused by unlimited resource allocation. An unauthenticated remote malicious user...Show more |
1Broadcom 2Advanced Secure Gateway Symantec ProxysgNov 21, 2024 Apr 11, 2018 N/A· v4 4.8 MEDIUM· v3 3.5 LOW· v2 Stored XSS vulnerability in the Symantec Advanced Secure Gateway (ASG) and ProxySG management consoles. A malicious appliance administrator can inject arbitrary JavaScript code in the management console web client applic...Show more |
1Broadcom 2Advanced Secure Gateway Symantec ProxysgNov 21, 2024 Apr 11, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Denial-of-service (DoS) vulnerability in the Symantec Advanced Secure Gateway (ASG) and ProxySG management consoles. A remote attacker can use crafted HTTP/HTTPS requests to cause denial-of-service through management con...Show more |
1Broadcom 2Advanced Secure Gateway Symantec ProxysgNov 21, 2024 Apr 11, 2018 N/A· v4 6.8 MEDIUM· v3 6.0 MEDIUM· v2 Unrestricted file upload vulnerability in the Symantec Advanced Secure Gateway (ASG) and ProxySG management consoles. A malicious appliance administrator can upload arbitrary malicious files to the management console and...Show more |
5Apache BroadcomOracle+2 more6Financial Services Crime And Compliance Management Studio IgniteSpring Data Commons+3 moreJun 26, 2026 Apr 11, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Spring Data Commons, versions prior to 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property binder vulnerability caused by improper neutralization of special elements. An unauthenticated remo...Show more |
2Broadcom Brocade2Fabric Operating System Fabric OsNov 21, 2024 Feb 8, 2018 N/A· v4 6.5 MEDIUM· v3 6.1 MEDIUM· v2 A vulnerability in the IPv6 stack on Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) versions before 7.4.2b, 8.1.2 and 8.2.0 could allow an attacker to cause a denial of service (CPU consumption and de...Show more |
2Broadcom Brocade2Fabric Operating System Fabric OsNov 21, 2024 Feb 8, 2018 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Cross-site scripting (XSS) vulnerability in the web-based management interface of Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) versions before 7.4.2b, 8.1.2 and 8.2.0 could allow remote attackers to...Show more |
1Broadcom 2Advanced Secure Gateway Symantec ProxysgNov 21, 2024 Jan 10, 2018 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 The Symantec Advanced Secure Gateway (ASG) 6.6, ASG 6.7 (prior to 6.7.2.1), ProxySG 6.5 (prior to 6.5.10.6), ProxySG 6.6, and ProxySG 6.7 (prior to 6.7.2.1) management console is susceptible to a reflected XSS vulnerabil...Show more |
The Symantec ProxySG 6.5 (prior to 6.5.10.6), 6.6, and 6.7 (prior to 6.7.2.1) management console is susceptible to a reflected XSS vulnerability. A remote attacker can use a crafted management console URL in a phishing a...Show more |
2Apple Broadcom3Bcm4355c0 Firmware Iphone OsTvosMay 13, 2026 Oct 4, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 On Broadcom BCM4355C0 Wi-Fi chips 9.44.78.27.0.1.56, an attacker can trigger an information leak due to insufficient length validation, related to ICMPv6 router advertisement offloading. |
2Apple Broadcom3Bcm4355c0 Firmware Iphone OsTvosMay 13, 2026 Sep 28, 2017 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 On Broadcom BCM4355C0 Wi-Fi chips 9.44.78.27.0.1.56 and other chips, properly crafted malicious over-the-air Fast Transition frames can potentially trigger internal Wi-Fi firmware heap and/or stack overflows, leading to...Show more |