Symantec
symantec
571 CVEs • 247 products
Products (247)
Click to collapseToggle
Products (247)
Click to collapse
CVEs (571)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Symantec 10Scan Engine Symantec Antivirus Filtering Domino MpeSymantec Antivirus Network Attached Storage+7 moreApr 23, 2026 Feb 28, 2008 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Stack-based buffer overflow in Symantec Decomposer, as used in certain Symantec antivirus products including Symantec Scan Engine 5.1.2 and other versions before 5.1.6.31, allows remote attackers to execute arbitrary cod...Show more |
1Symantec 10Scan Engine Symantec Antivirus ClearswiftSymantec Antivirus Filtering Domino Mpe+7 moreApr 23, 2026 Feb 28, 2008 N/A· v4 N/A· v3 7.1 HIGH· v2 Symantec Decomposer, as used in certain Symantec antivirus products including Symantec Scan Engine 5.1.2 and other versions before 5.1.6.31, allows remote attackers to cause a denial of service (memory consumption) via a...Show more |
Heap-based buffer overflow in the Veritas Enterprise Administrator (VEA) service (aka vxsvc.exe) in Symantec Veritas Storage Foundation 5.0 allows remote attackers to execute arbitrary code via a packet with a crafted va...Show more |
1Symantec 1Altiris Notification Server Apr 23, 2026 Feb 12, 2008 N/A· v4 N/A· v3 6.8 MEDIUM· v2 The agent in Symantec Altiris Notification Server before 6.0 SP3 R7 allows local users to gain privileges via a "Shatter" style attack. |
Symantec Ghost Solution Suite 1.1 before 1.1 patch 2, 2.0.0, and 2.0.1 does not authenticate connections between the console and the Ghost Management Agent, which allows remote attackers to execute arbitrary commands via...Show more |
Unrestricted file upload vulnerability in the FileUpload class running on the Symantec LiveState Apache Tomcat server, as used by Symantec Backup Exec System Recovery Manager 7.0 and 7.0.1, allows remote attackers to upl...Show more |
Multiple integer overflows in the Job Engine (bengine.exe) service in Symantec Backup Exec for Windows Servers (BEWS) 11d build 11.0.7170 and 11.0.6.6235 allow remote attackers to cause a denial of service (CPU and memor...Show more |
1Symantec 1Backupexec System Recovery Apr 23, 2026 Nov 29, 2007 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The Job Engine (bengine.exe) service in Symantec Backup Exec for Windows Servers (BEWS) 11d build 11.0.7170 and 11.0.6.6235 allows remote attackers to cause a denial of service (NULL dereference and service crash) via a...Show more |
4Activepdf AutonomyIbm+1 more6Docconverter Keyview Export SdkKeyview Filter Sdk+3 moreApr 23, 2026 Nov 10, 2007 N/A· v4 N/A· v3 9.3 HIGH· v2 Stack-based buffer overflow in Autonomy (formerly Verity) KeyView Viewer, Filter, and Export SDK before 9.2.0.12, as used by ActivePDF DocConverter, wp6sr.dll in IBM Lotus Notes 8.0 and before 7.0.3, Symantec Mail Securi...Show more |
4Activepdf AutonomyIbm+1 more6Docconverter Keyview Export SdkKeyview Filter Sdk+3 moreApr 23, 2026 Nov 10, 2007 N/A· v4 N/A· v3 9.3 HIGH· v2 Multiple stack-based buffer overflows in Autonomy (formerly Verity) KeyView Viewer, Filter, and Export SDK before 9.2.0.12, as used by ActivePDF DocConverter, IBM Lotus Notes before 7.0.3, Symantec Mail Security, and oth...Show more |
Aclient in Symantec Altiris Deployment Solution 6.x before 6.8.380.0 allows local users to gain local System privileges via the "Enable key-based authentication to Deployment server" browser option, a different issue tha...Show more |
1Symantec 2Norton Antivirus Norton Internet SecurityApr 23, 2026 Nov 5, 2007 N/A· v4 N/A· v3 6.0 MEDIUM· v2 The Disk Mount scanner in Symantec AntiVirus for Macintosh 9.x and 10.x, Norton AntiVirus for Macintosh 10.0 and 10.1, and Norton Internet Security for Macintosh 3.x, uses a directory with weak permissions (group writabl...Show more |
Cross-site scripting (XSS) vulnerability in the management console in Blue Coat ProxySG before 4.2.6.1, and 5.x before 5.2.2.5, allows remote attackers to inject arbitrary web script or HTML by modifying the URL that is...Show more |
1Symantec 1Altiris Deployment Solution Apr 23, 2026 Oct 18, 2007 N/A· v4 N/A· v3 6.9 MEDIUM· v2 Unspecified vulnerability in Symantec Altiris Deployment Solution allows attackers to obtain authentication credentials via unknown vectors, aka "Authentication Credentials Information Leakage in Altiris Deployment Solut...Show more |
1Symantec 13Antivirus Scan Engine Brightmail AntispamClient Security+10 moreApr 23, 2026 Oct 5, 2007 N/A· v4 N/A· v3 9.3 HIGH· v2 The Decomposer component in multiple Symantec products allows remote attackers to cause a denial of service (infinite loop) via a certain value in the PACK_SIZE field of a RAR archive file header. |
1Symantec 13Antivirus Scan Engine Brightmail AntispamClient Security+10 moreApr 23, 2026 Oct 5, 2007 N/A· v4 N/A· v3 9.3 HIGH· v2 Heap-based buffer overflow in the Decomposer component in multiple Symantec products allows remote attackers to execute arbitrary code via multiple crafted CAB archives. |
Unspecified vulnerability in the client in Symantec Veritas Backup Exec for Windows Servers 11d has unknown impact and remote attack vectors. NOTE: this information is based upon a vague advisory by a vulnerability info...Show more |
Norton Internet Security 2008 15.0.0.60 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibl...Show more |
The login interface in Symantec Enterprise Firewall 6.x, when a VPN with pre-shared key (PSK) authentication is enabled, generates different responses depending on whether or not a username is valid, which allows remote...Show more |
1Symantec 1Altiris Deployment Solution Apr 23, 2026 Aug 16, 2007 N/A· v4 N/A· v3 7.2 HIGH· v2 Aclient in Symantec Altiris Deployment Solution 6 before 6.8 SP2 (6.8.378) allows local users to gain local System privileges via the Log File Viewer. |