Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Guidance Software

First CVE: May 13, 2005Active for: 21 yearsTotal CVEs: 7

Guidance Software's vulnerability profile concentrates in its EnCase digital forensics and e-discovery platform, a specialized investigation tool with a narrower deployment footprint than consumer or broad infrastructure products. The durable signal centers on memory-handling issues and bounds-checking weaknesses characteristic of native forensic analysis code. Live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
7
Total CVEs
More Total CVEs than 88% of tracked vendors
3.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 95% of tracked vendors
4.2
Avg CVSS Score
Higher Avg CVSS Score than 2% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Guidance Software over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 13, 2005
21 years ago
Most Recent CVE
Aug 8, 2007
6,925 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (7 CVEs).

7 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2007-4201MEDIUM
Guidance Software EnCase 6.2 and 6.5 does not properly handle a volume with more than 25 partitions, which might allow remote attackers to prevent examination of certain data, a re
Aug 8, 20075.015NONO
CVE-2007-4035MEDIUM
Guidance Software EnCase does not properly handle (1) certain malformed MBR partition tables with many entries, which allows remote attackers to prevent logical collection of a dis
Jul 27, 20075.015NONO
CVE-2007-4194MEDIUM
Guidance Software EnCase 5.0 allows user-assisted remote attackers to cause a denial of service (stack memory consumption) and possibly have other unspecified impact via a malforme
Aug 8, 20074.314NONO
CVE-2007-4202MEDIUM
Guidance Software EnCase Enterprise Edition (EEE) 6 does not properly verify the identity of the acquisition target during communication with the EnCase Servlet (EEE servlet), whic
Aug 8, 20074.314NONO
CVE-2007-4036MEDIUM
Guidance Software EnCase allows user-assisted remote attackers to cause a denial of service via (1) a corrupted Microsoft Exchange database, which triggers an application crash whe
Jul 27, 20074.314NONO
CVE-2007-4037MEDIUM
Guidance Software EnCase allows user-assisted attackers to trigger a buffer over-read and application crash via a malformed NTFS filesystem containing a modified FILE record with a
Jul 27, 20074.314NONO
CVE-2005-1578LOW
EnCase Forensic Edition 4.18a does not support Device Configuration Overlays (DCO), which allows attackers to hide information without detection.
May 13, 20052.111NONO
View all 7 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products7 CVEs
14%
86%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMedium
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown7 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown7 (100.0%)
User Interaction
None0 (0.0%)
Unknown7 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown7 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (7 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Guidance Software.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Guidance Software — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Guidance Software's Products

View all 1 CNAs →

Top CWEs