Symantec

15 May

CVE-2012-2612

The DiagTraceHex function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatch ...

CVE-2012-2611

The DiagTraceR3Info function in the Dialog processor in disp+work.exe 7010.29.15.58313 and 7200. ...

CVE-2012-2514

The DiagiEventSource function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Disp ...

CVE-2012-2513

The Diaginput function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher ...

CVE-2012-2512

The DiagTraceStreamI function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Disp ...

CVE-2012-2511

The DiagTraceAtoms function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispat ...

14 May

CVE-2012-2333

Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1 ...

CVE-2012-2277

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5. ...

CVE-2012-2276

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5. ...

CVE-2012-1804

Progea Movicon before 11.3 allows remote attackers to cause a denial of service (out-of-bounds r ...

Óâåäîìëåíèÿ 24 - 38 of 188
First | Prev. | 1 2 3 4 5 6 7 8 9 10 11 | Next | Last 

SYM08-015: Veritas Storage Foundation for Windows Volume Manager Scheduler Service for Windows Security Update Circumvention

It is possible to circumvent the security patch that resolved a previously identified authentication bypass, remote code execution vulnerability in the Veritas Storage Foundation for Windows v5.0 Volume Manager Scheduler Service.

15 august, 2008

SYM08-014: Symantec Altiris Notification Server Agent GUI Local Elevation of Privilege

A non-privileged user can leverage the Symantec Altiris Notification Server Agent Graphical User Interface (GUI) to gain privileged access to the system.

18 june, 2008

SYM08-013: Symantec Backup Exec System Recovery Manager - Directory Traversal Vulnerability

Symantec’s Backup Exec System Recovery Manager is susceptible to a directory traversal vulnerability that could result in potential elevation of privilege.

29 may, 2008

SYM08-011: Symantec Altiris Deployment Solution Clear Text Password

Symantec’s Altiris Deployment Solution stores the Deployment Solution Agent (AClient) password in clear text in system memory.

14 april, 2008

SYM08-010: Symantec Mail Security Autonomy KeyView Module Vulnerability

Multiple buffer overflow vulnerabilities have been identified in the Autonomy KeyView module used in Symantec’s Mail Security products.

10 april, 2008

SYM08-009: Symantec AutoFix Support Tool ActiveX Control Vulnerabilities

Two vulnerabilities reported in an ActiveX control used by the Symantec AutoFix Tool could potentially allow arbitrary code execution in the context of the user’s browser.

03 april, 2008

SYM008-008: Symantec Altiris Deployment Server Escalation of Privileges

An escalation of privilege vulnerability in the Symantec Altiris Deployment Solution Agent (AClient.exe) has been resolved.

11 march, 2008

SYM08-007: Multiple Vulnerabilities in Scheduler component for NetBackup Server/Enterprise Server on all supported Windows Platforms

Multiple Vulnerabilities in Scheduler component for NetBackup Server/Enterprise Server on all supported Windows Platforms.

29 february, 2008

SYM08-005: Veritas Storage Foundation by Symantec: Veritas Enterprise Administrator, Heap Overflow

Successful exploitation of this issue can result in a crash of the service in both the 5.0 Windows and Unix versions.

22 february, 2008

SYM08-004: Veritas Storage Foundation for Windows by Symantec: Denial of Service in Scheduler Service

Successful exploitation results in a service halt requiring manual intervention by an administrator to restart the Scheduler Service.

22 february, 2008

SYM08-003: Symantec Ghost Solution Suite: server authentication vulnerability

Symantec has released updates for all supported 2.0.0 versions of Symantec Ghost Solution Suite.

08 february, 2008

SYM008-002: Symantec Altiris Notification Server Agent Privilege Escalation Vulnerability

A privilege escalation vulnerability in the Symantec Altiris Notification Server Agent has been identified.

07 february, 2008

SYM08-001: Unauthorized script can be uploaded to Symantec Backup Exec System Recovery Manager

Symantec Backup Exec System Recovery Manager Option- Unauthorized File Upload

04 february, 2008

Symantec Backup Exec for Windows Server: Multiple Denial of Service Issues in Job Engine

Symantec Backup Exec for Windows Servers (BEWS) may be susceptible to multiple denial of service attacks (DoS) if maliciously formatted packets are passed to the BEWS Job Engine.

28 november, 2007

Symantec AntiVirus for Macintosh and Norton AntiVirus for Macintosh Local Elevation of Privilege

A feature of Symantec AntiVirus for Macintosh and Norton AntiVirus for Macintosh could be used by members of the group admin to execute code as the root user (uid 0) on the local system.

02 november, 2007

Óâåäîìëåíèÿ 24 - 38 of 188
First | Prev. | 1 2 3 4 5 6 7 8 9 10 11 12 | Next | Last

CVE-2012-2612

The DiagTraceHex function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2611

The DiagTraceR3Info function in the Dialog processor in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2, when a certain Developer Trace configuration is enabled, allows remote attackers to execu ...

15 may, 2012

CVE-2012-2514

The DiagiEventSource function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2513

The Diaginput function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2512

The DiagTraceStreamI function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2511

The DiagTraceAtoms function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2333

Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1.1, TLS 1.2, or DTLS is used with CBC encryption, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecif ...

14 may, 2012

CVE-2012-2277

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial of service (pvcontrol.exe process hang) via \n (line feed) characters in the Id fields of ...

14 may, 2012

CVE-2012-2276

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via input data that (1) lacks FIPS ...

14 may, 2012

CVE-2012-1804

Progea Movicon before 11.3 allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption) via a crafted HTTP request.

14 may, 2012

Firefox 8/9 AttributeChildRemoved() Use-After-Free Exploit

Target: Mozilla Firefox 8.x, 9.x
Impact: Code execution

MS12-027 MSCOMCTL ActiveX Buffer Overflow Exploit (meta)

Target: MSCOMCTL ActiveX
Impact: Code execution

Microsoft Windows RDP PoC (CVE-2012-0002)

Target: Microsoft Windows XP, 2003, Vista, 7, 2008
Impact: Code execution