CVE Tools

Symantec-corporation

30 CVEs tracked since 2017. Since May 2017, 1 of them reached CISA KEV.

Symantec-corporation CVEs per month

May 2017 to Aug 2019. Point at a month, or focus the strip and use the arrow keys.
Symantec-corporation CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2017-0540
2017-06null or fewer
2017-07null or fewer
2017-0831
2017-0930
2017-1020
2017-11null or fewer
2017-1230
2018-0130
2018-02null or fewer
2018-03null or fewer
2018-04null or fewer
2018-05null or fewer
2018-0630
2018-07null or fewer
2018-0840
2018-09null or fewer
2018-10null or fewer
2018-11null or fewer
2018-12null or fewer
2019-01null or fewer
2019-02null or fewer
2019-03null or fewer
2019-04null or fewer
2019-05null or fewer
2019-06null or fewer
2019-07null or fewer
2019-0850

Products

The products that kept showing up in Symantec-corporation's monthly top three, with their CVEs summed over those months.

  1. Proxysg42 months
  2. Asg32 months
  3. Messaging Gateway32 months
  4. Norton Family Android App21 month
  5. Symantec Advanced Secure Gateway (Asg)21 month
  6. Symantec Encryption Desktop22 months
  7. Symantec Endpoint Protection21 month
  8. Symantec Proxysg21 month
  9. Content Analysis (Ca)11 month
  10. Management Center (Mc)11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Symantec-corporation.

  1. CVE-2019-18380Symantec Industrial Control System Protection (ICSP), versions 6.x.x, may be susceptible to an unauthorized access issue that could potentially allow a threat actor to create or modify application ...6.5
  2. CVE-2019-12755Norton Password Manager, prior to 6.5.0.2104, may be susceptible to an information disclosure issue, which is a type of vulnerability whereby there is an unintentional disclosure of information to ...5.5
  3. CVE-2019-9697An information disclosure vulnerability in the Management Center (MC) REST API 2.0, 2.1, and 2.2 prior to 2.2.2.1 allows a malicious authenticated user to obtain passwords for external backup and C...6.5
  4. CVE-2019-12753An information disclosure vulnerability in Symantec Reporter web UI 10.3 prior to 10.3.2.5 allows a malicious authenticated administrator user to obtain passwords for external SMTP, FTP, FTPS, LDAP...4.9
  5. CVE-2019-12754Symantec My VIP portal, previous version which has already been auto updated, was susceptible to a cross-site scripting (XSS) exploit, which is a type of issue that can enable attackers to inject c...4.8
  6. CVE-2018-18371The ASG/ProxySG FTP proxy WebFTP mode allows intercepting FTP connections where a user accesses an FTP server via a ftp:// URL in a web browser. An information disclosure vulnerability in the WebFT...6.5
  7. CVE-2018-18370The ASG/ProxySG FTP proxy WebFTP mode allows intercepting FTP connections where a user accesses an FTP server via a ftp:// URL in a web browser. A stored cross-site scripting (XSS) vulnerability in...6.1
  8. CVE-2018-18367Symantec Endpoint Protection Manager (SEPM) prior to and including 12.1 RU6 MP9 and prior to 14.2 RU1 may be susceptible to a DLL Preloading vulnerability, which is a type of issue that can occur w...7.8
  9. CVE-2018-18366Symantec Norton Security prior to 22.16.3, SEP (Windows client) prior to and including 12.1 RU6 MP9, and prior to 14.2 RU1, SEP SBE prior to Cloud Agent 3.00.31.2817, NIS-22.15.2.22, SEP-12.1.7484....6.5
  10. CVE-2018-12244SEP (Mac client) prior to and including 12.1 RU6 MP9 and prior to 14.2 RU1 may be susceptible to a CSV/DDE injection (also known as formula injection) vulnerability, which is a type of issue whereb...6.3
  11. CVE-2018-18369Norton Security (Windows client) prior to 22.16.3 and SEP SBE (Windows client) prior to Cloud Agent 3.00.31.2817, NIS-22.15.2.22 & SEP-12.1.7484.7002, may be susceptible to a DLL Preloading vulnera...7.8
  12. CVE-2018-18364Symantec Ghost Solution Suite (GSS) versions prior to 3.3 RU1 may be susceptible to a DLL hijacking vulnerability, which is a type of issue whereby a potential attacker attempts to execute unexpect...7.3
  13. CVE-2018-12237The Symantec Reporter CLI 10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8 is susceptible to an OS command injection vulnerability. An authenticated malicious administrator with Enable mode access...7.2
  14. CVE-2018-18363Norton App Lock prior to 1.4.0.445 can be susceptible to a bypass exploit. In this type of circumstance, the exploit can allow the user to circumvent the app to prevent it from locking the device, ...6.2
  15. CVE-2018-18362Norton Password Manager for Android (formerly Norton Identity Safe) may be susceptible to a cross site scripting (XSS) exploit, which is a type of issue that can enable attackers to inject client-s...6.1

The record

Peak rank
#94 in Aug 2018
Busiest month shown
Aug 2019, 5 CVEs
Months with a KEV entry
1 since May 2017
Monthly snapshots
9 since 2017
Symantec-corporation's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store