Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
encryption vulnerabilities and exploits
(subscribe to this query)
7.8
CVSSv3
CVE-2019-9702
Symantec Endpoint Encryption, prior to SEE 11.3.0, may be susceptible to a privilege escalation vulnerability, which is a type of issue that allows a user to gain elevated access to resources that are normally protected at lower access levels.
Symantec Endpoint Encryption
7.8
CVSSv3
CVE-2019-9703
Symantec Endpoint Encryption, prior to SEE 11.3.0, may be susceptible to a privilege escalation vulnerability, which is a type of issue that allows a user to gain elevated access to resources that are normally protected at lower access levels.
Symantec Endpoint Encryption
8.8
CVSSv3
CVE-2018-6563
Multiple cross-site request forgery (CSRF) vulnerabilities in totemomail Encryption Gateway prior to 6.0.0_Build_371 allow remote malicious users to hijack the authentication of users for requests that (1) change user settings, (2) send emails, or (3) change contact information b...
Totemo Encryption Gateway
1 EDB exploit
4.3
CVSSv3
CVE-2018-15773
Dell Encryption (formerly Dell Data Protection | Encryption) v10.1.0 and previous versions contain an information disclosure vulnerability. A malicious user with physical access to the machine could potentially exploit this vulnerability to access the unencrypted RegBack folder t...
Dell Data Protection \\| Encryption
8.8
CVSSv3
CVE-2018-10352
A vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow a remote malicious user to execute arbitrary SQL statements on vulnerable installations due to a flaw in the formConfiguration class. Authentication is required to exploit this vulnerability.
Trendmicro Email Encryption Gateway
5.3
CVSSv3
CVE-2021-39020
IBM Guardium Data Encryption (GDE) 4.0.0.7 and lower stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history. IBM X-Force ID: 213855.
Ibm Guardium Data Encryption
9.8
CVSSv3
CVE-2016-4351
SQL injection vulnerability in the authentication functionality in Trend Micro Email Encryption Gateway (TMEEG) 5.5 before build 1107 allows remote malicious users to execute arbitrary SQL commands via unspecified vectors.
Trendmicro Email Encryption Gateway
8.1
CVSSv3
CVE-2020-8897
A weak robustness vulnerability exists in the AWS Encryption SDKs for Java, Python, C and Javalcript prior to versions 2.0.0. Due to the non-committing property of AES-GCM (and other AEAD ciphers such as AES-GCM-SIV or (X)ChaCha20Poly1305) used by the SDKs to encrypt messages, an...
Amazon Aws Encryption Sdk
7.5
CVSSv3
CVE-2018-6562
totemomail Encryption Gateway prior to 6.0_b567 allows remote malicious users to obtain sensitive information about user sessions and encryption key material via a JSONP hijacking attack.
Totemo Totemomail Encryption Gateway
7.8
CVSSv3
CVE-2017-11397
A service DLL preloading vulnerability in Trend Micro Encryption for Email versions 5.6 and below could allow an unauthenticated remote malicious user to execute arbitrary code on a vulnerable system.
Trendmicro Encryption For Email
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-38028
CVE-2024-32406
CVE-2024-25624
IMAP
CVE-2024-2310
CVE-2024-0874
CVE-2024-20359
XXE
remote code execution
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »