Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In February 2020
Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 MP1 and prior to 14.2.5569.2100 respectively, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.
CVSS Score
7.8
EPSS Score
0.001
Published
2020-02-11
Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 MP1 and prior to 14.2.5569.2100 respectively, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.
CVSS Score
7.8
EPSS Score
0.001
Published
2020-02-11
Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 MP1 and prior to 14.2.5569.2100 respectively, may be susceptible to a denial of service vulnerability, which is a type of issue whereby a threat actor attempts to tie up the resources of a resident application, thereby making certain functions unavailable.
CVSS Score
5.5
EPSS Score
0.001
Published
2020-02-11
Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 MP1 and prior to 14.2.5569.2100 respectively, may be susceptible to an arbitrary file write vulnerability, which is a type of issue whereby an attacker is able to overwrite existing files on the resident system without proper privileges.
CVSS Score
5.5
EPSS Score
0.001
Published
2020-02-11
Zenphoto before 1.4.3.4 admin-news-articles.php date parameter XSS.
CVSS Score
6.1
EPSS Score
0.002
Published
2020-02-11
A Command Execution Vulnerability exists in IBM Sterling External Authentication Server 2.2.0, 2.3.01, 2.4.0, and 2.4.1 via an unspecified OS command, which could let a local malicious user execute arbitrary code.
CVSS Score
7.8
EPSS Score
0.001
Published
2020-02-11
Ruby PDFKit gem prior to 0.5.3 has a Code Execution Vulnerability
CVSS Score
9.8
EPSS Score
0.013
Published
2020-02-11
The Bug Genie before 3.2.6 has Multiple XSS and HTML Injection Vulnerabilities
CVSS Score
6.1
EPSS Score
0.003
Published
2020-02-11
YaBB through 2.5.2: 'guestlanguage' Cookie Parameter Local File Include Vulnerability
CVSS Score
9.8
EPSS Score
0.02
Published
2020-02-11
NextGEN Gallery plugin before 1.9.13 for WordPress: ngggallery.php file upload
CVSS Score
9.8
EPSS Score
0.447
Published
2020-02-11


Contact Us

Shodan ® - All rights reserved