Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2769▼ 305 respecto a la semana anterior
Críticas / altas1294▼ 203 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)207▼ 114 respecto a la semana anterior
722 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 2.5% | — | Symantec Liveupdate | 5/10/2001 | 16/6/2026 | Symantec LiveUpdate before 1.6 does not use cryptography to ensure the integrity of download files, which allows remote attackers to execute arbitrary code via DNS spoofing of the update.symantec.com site. | |
| Modificada | Media (5) | 3.2% | — | Symantec Norton Antivirus | 7/9/2001 | 16/6/2026 | The default configuration of Norton AntiVirus for Microsoft Exchange 2000 2.x allows remote attackers to identify the recipient's INBOX file path by sending an email with an attachment containing malicious content, which includes the path in the rejection notice. | |
| Modificada | Media (4.6) | 0.38% | — | Symantec Liveupdate | 14/8/2001 | 16/6/2026 | Symantec LiveUpdate 1.5 stores proxy passwords in cleartext in a registry key, which could allow local users to obtain the passwords. | |
| Modificada | Media (5) | 1.8% | — | Symantec Norton Ghost | 2/8/2001 | 16/6/2026 | Symantec Ghost 6.5 and earlier allows a remote attacker to create a denial of service by sending large (> 45Kb) amounts of data to the Ghost Configuration Server on port 1347, which triggers an error that is not properly handled. | |
| Modificada | Alta (7.5) | 1.9% | — | Symantec Raptor Firewall | 18/6/2001 | 16/6/2026 | Configuration error in Axent Raptor Firewall 6.5 allows remote attackers to use the firewall as a proxy to access internal web resources when the http.noproxy Rule is not set. | |
| Modificada | Baja (2.1) | 0.33% | — | Symantec Veritas Cluster Server | 3/5/2001 | 16/6/2026 | VERITAS Cluster Server (VCS) 1.3.0 on Solaris allows local users to cause a denial of service (system panic) via the -L option to the lltstat command. | |
| Modificada | Media (5) | 1.8% | — | Symantec Veritas Backup | 12/3/2001 | 16/6/2026 | Veritas Backup agent on Linux allows remote attackers to cause a denial of service by establishing a connection without sending any data, which causes the process to hang. | |
| Modificada | Media (5) | 1.1% | — | Symantec I-gear | 11/12/2000 | 23/9/2026 | I-gear 3.5.7 y versiones anteriores no procesa correctamente las entradas de registro en las que una URL tiene más de 255 caracteres, lo que permite a un atacante causar errores en los informes. | |
| Modificada | Alta (10) | 2.0% | — | Novell ClientSymantec Norton Antivirus | 20/10/2000 | 16/6/2026 | Norton AntiVirus 5.00.01C with the Novell Netware client does not properly restart the auto-protection service after the first user has logged off of the system. | |
| Modificada | Alta (7.2) | 0.94% | 💥 Exploit | Symantec Veritas Volume Manager | 16/6/2000 | 16/6/2026 | Veritas Volume Manager creates a world writable .server_pids file, which allows local users to add arbitrary commands into the file, which is then executed by the vmsa_server script. | |
| Modificada | Media (5) | 2.6% | — | Symantec Norton Antivirus | 14/6/2000 | 16/6/2026 | Buffer overflow in Norton Antivirus for Exchange (NavExchange) allows remote attackers to cause a denial of service via a .zip file that contains long file names. | |
| Modificada | Media (5) | 2.0% | — | Symantec Norton Antivirus | 14/6/2000 | 16/6/2026 | In some cases, Norton Antivirus for Exchange (NavExchange) enters a "fail-open" state which allows viruses to pass through the server. | |
| Modificada | Media (5) | 3.8% | 💥 Exploit | Symantec Pcanywhere | 25/4/2000 | 16/6/2026 | pcAnywhere 8.x and 9.0 allows remote attackers to cause a denial of service via a TCP SYN scan, e.g. by nmap. | |
| Modificada | Media (5) | 1.4% | — | Symantec Pcanywhere | 9/4/2000 | 16/6/2026 | PCAnywhere allows remote attackers to cause a denial of service by terminating the connection before PCAnywhere provides a login prompt. | |
| Modificada | Alta (10) | 5.9% | 💥 Exploit | Symantec Pcanywhere | 6/4/2000 | 16/6/2026 | The default encryption method of PcAnywhere 9.x uses weak encryption, which allows remote attackers to sniff and decrypt PcAnywhere or NT domain accounts. | |
| Modificada | Media (5) | 2.0% | — | Symantec Norton Antivirus | 17/3/2000 | 16/6/2026 | Buffer overflow in the web server for Norton AntiVirus for Internet Email Gateways allows remote attackers to cause a denial of service via a long URL. | |
| Modificada | Alta (7.2) | 1.2% | 💥 Exploit | Mcafee VirusscanSymantec Norton Antivirus | 22/12/1999 | 16/6/2026 | The default configurations for McAfee Virus Scan and Norton Anti-Virus virus checkers do not check files in the RECYCLED folder that is used by the Windows Recycle Bin utility, which allows attackers to store malicious code without detection. | |
| Modificada | Media (5) | 2.0% | — | Symantec Norton Antivirus | 16/12/1999 | 16/6/2026 | Buffer overflow in the POP server POProxy for the Norton Anti-Virus protection NAV2000 program via a large USER command. | |
| Modificada | Media (5) | 7.5% | 💥 Exploit | Symantec Mail-gear | 29/11/1999 | 16/6/2026 | Symantec Mail-Gear 1.0 web interface server allows remote users to read arbitrary files via a .. (dot dot) attack. | |
| Modificada | Media (5) | 3.4% | 💥 Exploit | Symantec Pcanywhere | 28/5/1999 | 16/6/2026 | Symantec pcAnywhere 8.0 allows remote attackers to cause a denial of service (CPU utilization) via a large amount of data to port 5631. | |
| Modificada | Media (4.6) | 0.40% | — | Symantec Norton Antivirus | 9/4/1999 | 16/6/2026 | Norton AntiVirus for Internet Email Gateways (NAVIEG) 1.0.1.7 and earlier, and Norton AntiVirus for MS Exchange (NAVMSE) 1.5 and earlier, store the administrator password in cleartext in (1) the navieg.ini file for NAVIEG, and (2) the ModifyPassword registry key in NAVMSE. | |
| Modificada | Media (5.1) | 1.8% | — | Symantec Norton Utilities | 4/5/1997 | 16/6/2026 | Symantec Norton Utilities 2.0 for Windows 95 marks the TUNEOCX.OCX ActiveX control as safe for scripting, which allows remote attackers to execute arbitrary commands via the run option through malicious web pages that are accessed by browsers such as Internet Explorer 3.0. |