Symantec Endpoint Detection And Response vulnerabilities

4 known vulnerabilities affecting symantec/endpoint_detection_and_response.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH2MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2022-37015CRITICALCVSS 9.8fixed in 4.7.02022-11-08
CVE-2022-37015 [CRITICAL] CWE-269 CVE-2022-37015: Symantec Endpoint Detection and Response (SEDR) Appliance, prior to 4.7.0, may be susceptible to a p Symantec Endpoint Detection and Response (SEDR) Appliance, prior to 4.7.0, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.
nvd
CVE-2020-12593HIGHCVSS 7.5fixed in 4.52020-11-18
CVE-2020-12593 [HIGH] CVE-2020-12593: Symantec Endpoint Detection & Response, prior to 4.5, may be susceptible to an information disclosur Symantec Endpoint Detection & Response, prior to 4.5, may be susceptible to an information disclosure issue, which is a type of vulnerability that could potentially allow unauthorized access to data.
nvd
CVE-2020-5839HIGHCVSS 7.5fixed in 4.42020-07-08
CVE-2020-5839 [HIGH] CVE-2020-5839: Symantec Endpoint Detection And Response, prior to 4.4, may be susceptible to an information disclos Symantec Endpoint Detection And Response, prior to 4.4, may be susceptible to an information disclosure issue, which is a type of vulnerability that could potentially allow unauthorized access to data.
nvd
CVE-2019-19547MEDIUMCVSS 6.1fixed in 4.3.02020-01-13
CVE-2019-19547 [MEDIUM] CWE-79 CVE-2019-19547: Symantec Endpoint Detection and Response (SEDR), prior to 4.3.0, may be susceptible to a cross site Symantec Endpoint Detection and Response (SEDR), prior to 4.3.0, may be susceptible to a cross site scripting (XSS) issue. XSS is a type of issue that can enable attackers to inject client-side scripts into web pages viewed by other users. An XSS vulnerability may be used by attackers to potentially bypass access controls such as the same-origin polic
nvd