Known Vulnerabilities for products from Symantec

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Symantec".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Symantec can be found at device.report : Symantec

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-3991 json Not Provided 2026-03-30 2026-03-31
CVE-2023-23958 json Symantec Protection Engine, prior to 9.1.0, may be susceptible to a Hash Leak vulnerability. 6.5 - MEDIUM 2023-09-27 2023-09-28
CVE-2023-23957 json An authenticated user can see and modify the value for ‘next’ query parameter in Symantec Identity Portal 14.4 5.4 - MEDIUM 2023-09-19 2023-09-21
CVE-2022-37015 json Symantec Endpoint Detection and Response (SEDR) Appliance, prior to 4.7.0, may be susceptible to a privilege escalation vulne... 9.8 - CRITICAL 2022-11-08 2022-11-09
CVE-2022-25630 json An authenticated user can embed malicious content with XSS into the admin group policy page. 5.4 - MEDIUM 2022-12-09 2023-04-10
CVE-2022-25629 json An authenticated user who has the privilege to add/edit annotations on the Content tab, can craft a malicious annotation that... 5.4 - MEDIUM 2022-12-09 2023-03-01
CVE-2022-25623 json The Symantec Management Agent is susceptible to a privilege escalation vulnerability. A low privilege local account can be el... 7.8 - HIGH 2022-03-04 2023-08-08
CVE-2021-30642 json An input validation flaw in the Symantec Security Analytics web UI 7.2 prior 7.2.7, 8.1, prior to 8.1.3-NSR3, 8.2, prior to 8... 9.8 - CRITICAL 2021-04-27 2021-05-07
CVE-2020-12593 json Symantec Endpoint Detection & Response, prior to 4.5, may be susceptible to an information disclosure issue, which is a type ... 7.5 - HIGH 2020-11-18 2020-11-30
CVE-2020-5839 json Symantec Endpoint Detection And Response, prior to 4.4, may be susceptible to an information disclosure issue, which is a typ... 7.5 - HIGH 2020-07-08 2021-07-21
CVE-2020-5838 json Symantec IT Analytics, prior to 2.9.1, may be susceptible to a cross-site scripting (XSS) exploit, which is a type of issue t... 4.8 - MEDIUM 2020-05-13 2020-05-15
CVE-2020-5837 json Symantec Endpoint Protection, prior to 14.3, may not respect file permissions when writing to log files that are replaced by ... 7.8 - HIGH 2020-05-11 2020-05-14
CVE-2020-5836 json Symantec Endpoint Protection, prior to 14.3, can potentially reset the ACLs on a file as a limited user while Symantec Endpoi... 7.8 - HIGH 2020-05-11 2021-07-21
CVE-2020-5835 json Symantec Endpoint Protection Manager, prior to 14.3, has a race condition in client remote deployment which may result in an ... 7 - HIGH 2020-05-11 2020-05-14
CVE-2020-5834 json Symantec Endpoint Protection Manager, prior to 14.3, may be susceptible to a directory traversal attack that could allow a re... 5.3 - MEDIUM 2020-05-11 2020-05-14
CVE-2020-5833 json Symantec Endpoint Protection Manager, prior to 14.3, may be susceptible to an out of bounds vulnerability, which is a type of... 3.3 - LOW 2020-05-11 2020-05-14
CVE-2020-5832 json Symantec Data Center Security Manager Component, prior to 6.8.2 (aka 6.8 MP2), may be susceptible to a privilege escalation v... 7.8 - HIGH 2020-04-06 2021-07-21
CVE-2020-5831 json Symantec Endpoint Protection Manager (SEPM), prior to 14.2 RU2 MP1, may be susceptible to an out of bounds vulnerability, whi... 3.3 - LOW 2020-02-11 2020-02-13
CVE-2020-5830 json Symantec Endpoint Protection Manager (SEPM), prior to 14.2 RU2 MP1, may be susceptible to an out of bounds vulnerability, whi... 3.3 - LOW 2020-02-11 2020-02-13
CVE-2020-5829 json Symantec Endpoint Protection Manager (SEPM), prior to 14.2 RU2 MP1, may be susceptible to an out of bounds vulnerability, whi... 3.3 - LOW 2020-02-11 2020-02-13

Known software with vulnerabilities from Symantec

Type Vendor Product Version
ApplicationSymantecAdvanced Secure Gateway6.6
ApplicationSymantecAdvanced Threat Protection2.0
ApplicationSymantecAltiris Deployment Solution-
ApplicationSymantecAltiris It Management Suite7.6
ApplicationSymantecAms10.0.0.0
ApplicationSymantecAnti-virus Engine20151.1.0.32
ApplicationSymantecAntivirus-
ApplicationSymantecAntivirus Central Quarantine Server-
ApplicationSymantecAntivirus Scan Engine-
ApplicationSymantecAntivirus Scan Engine Clearswift-
ApplicationSymantecAntivirus Scan Engine For Network Attached Storage-
ApplicationSymantecApplication Service Dashboard2.0.0
ApplicationSymantecAutomated Support Assistant-
ApplicationSymantecBackupexec System Recovery-
ApplicationSymantecBackup Exec2010_r3
ApplicationSymantecBrightmail Antispam-
HardwareSymantecClientless Vpn Gateway 4400-
ApplicationSymantecClient Firewall-
ApplicationSymantecClient Security-
ApplicationSymantecCritical System Protection4.5