NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
19439 | CVE-2016-3647 | Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authenticated users to conduct server-side request forgery (SSRF) attacks, and trigger network traffic to arbitrary intranet hosts, via a crafted request. | 2 | 4 | Medium | 2017-01-19 | 2016-07-01 | View | |
19440 | CVE-2016-3648 | Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authenticated users to bypass the Authentication Lock protection mechanism, and conduct brute-force password-guessing attacks against management-console accounts, by entering data into the authorization window. | 2 | 4 | Medium | 2017-01-19 | 2016-07-01 | View | |
19441 | CVE-2016-3649 | Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authenticated administrators to enumerate administrator accounts via modified GET requests. | 2 | 4 | Medium | 2017-01-19 | 2016-07-01 | View | |
19442 | CVE-2016-3650 | Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authenticated users to discover credentials via a brute-force attack. | 2 | 4 | Medium | 2017-01-19 | 2016-07-01 | View | |
19443 | CVE-2016-3651 | Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authenticated users to discover the PHP JSESSIONID value via unspecified vectors. | 2 | 6 | Medium | 2017-01-19 | 2016-07-01 | View |
Page 15814 of 17672, showing 5 records out of 88360 total, starting on record 79066, ending on 79070