Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
encryption vulnerabilities and exploits
(subscribe to this query)
5.3
CVSSv3
CVE-2021-39020
IBM Guardium Data Encryption (GDE) 4.0.0.7 and lower stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history. IBM X-Force ID: 213855.
Ibm Guardium Data Encryption
5.3
CVSSv3
CVE-2024-23680
AWS Encryption SDK for Java versions 2.0.0 to 2.2.0 and less than 1.9.0 incorrectly validates some invalid ECDSA signatures.
Amazon Aws Encryption Sdk
9.1
CVSSv3
CVE-2015-8151
Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows remote authenticated users to execute arbitrary OS commands by leveraging console administrator access.
Symantec Encryption Management Server
6.5
CVSSv3
CVE-2018-10353
A SQL injection information disclosure vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow a remote malicious user to disclose sensitive information on vulnerable installations due to a flaw in the formChangePass class. Authentication is required to exploit this...
Trendmicro Email Encryption Gateway
4.3
CVSSv3
CVE-2018-15773
Dell Encryption (formerly Dell Data Protection | Encryption) v10.1.0 and previous versions contain an information disclosure vulnerability. A malicious user with physical access to the machine could potentially exploit this vulnerability to access the unencrypted RegBack folder t...
Dell Data Protection | Encryption
7.5
CVSSv3
CVE-2015-8148
The LDAP service in Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows remote malicious users to obtain sensitive information about administrator accounts via a modified request.
Symantec Encryption Management Server
7.5
CVSSv3
CVE-2015-8149
The LDAP service in Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows remote malicious users to cause a denial of service (heap memory corruption and service outage) via crafted requests.
Symantec Encryption Management Server
7.8
CVSSv3
CVE-2015-8150
Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows local users to obtain root access by modifying a batch file.
Symantec Encryption Management Server
7.8
CVSSv3
CVE-2018-20341
WINMAGIC SecureDoc Disk Encryption software prior to 8.3 has an Unquoted Service Path vulnerability, which could allow an malicious user to execute arbitrary code on a target system. If the executable is enclosed in quote tags "" then the system will know where to find ...
Winmagic Securedoc Disk Encryption
7.5
CVSSv3
CVE-2018-5243
The Symantec Encryption Management Server (SEMS) product, prior to version 3.4.2 MP1, may be susceptible to a denial of service (DoS) exploit. A DoS attack is a type of attack whereby the perpetrator attempts to make a particular machine or network resource unavailable to its int...
Symantec Encryption Management Server
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-23692
CVE-2012-1823
memory leak
CVE-2024-0627
CVE-2024-31402
privilege escalation
CVE-2024-36418
remote code execution
CVE-2024-27844
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »