Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Norman

First CVE: Oct 14, 2005Active for: 21 yearsTotal CVEs: 29
27.4
VTI Score
Low

Norman's vulnerability profile centers on a focused family of endpoint security and malware-analysis products, including antivirus, antispyware, and sandbox tools, which occupy a specialized niche in the security software landscape. The recurring weakness classes reflect the inherent complexity of malware detection and memory inspection: race conditions in concurrent resource access, information disclosure, improper input validation, and buffer-boundary issues are characteristic of software that must parse untrusted binaries and maintain state across multiple threat-analysis pathways. The vendor's disclosures span a modest product portfolio but concentrate on products that operate at the endpoint and in isolated analysis environments, where weaknesses can affect the integrity of the detection and remediation process itself. Defenders deploying Norman security tools should track patch cycles for the core antivirus and sandbox components and remain aware that flaws in security software can amplify downstream risk if they degrade detection or create new attack surfaces. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.

FAUCET AI Generated
29
Total CVEs
More Total CVEs than 97% of tracked vendors
0.6
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 9% of tracked vendors
5.3
Avg CVSS Score
Higher Avg CVSS Score than 15% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Norman over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 14, 2005
20 years ago
Most Recent CVE
Oct 16, 2024
647 days ago

Products(7 total)

Top CVEs

Signals from CVEs in this vendor scope (29 CVEs).

29 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2012-1459MEDIUM
The TAR file parser in AhnLab V3 Internet Security 2011.01.18.00, Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8.1351.0 and 5.0.677.0, AVG Anti-Virus 10
Mar 21, 20124.371NONO
CVE-2012-1457MEDIUM
The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8.1351.0 and 5.0.677.0, AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Quick Heal (aka
Mar 21, 20124.370NONO
CVE-2012-1456MEDIUM
The TAR file parser in AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, F-Prot Antivirus 4.6.
Mar 21, 20124.369NONO
CVE-2012-1443MEDIUM
The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick Heal (aka Cat QuickHeal) 11.00, G Data AntiVirus 21, AVEngine 20101.3.0.103 in Symantec Endpoint Protectio
Mar 21, 20124.369NONO
CVE-2012-1446MEDIUM
The ELF file parser in Quick Heal (aka Cat QuickHeal) 11.00, McAfee Anti-Virus Scanning Engine 5.400.0.1158, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Norman Antiv
Mar 21, 20124.367NONO
CVE-2012-1461MEDIUM
The Gzip file parser in AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Command Antivirus 5.2.11.5, Emsisoft Anti-Malware 5.1.0.1, F-Secure Anti-Virus 9.0.16160.0, Fortinet Antivirus
Mar 21, 20124.366NONO
CVE-2012-1420MEDIUM
The TAR file parser in Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5.2.11.5, F-Prot Antivirus 4.6.2.117, Fortinet Antivirus 4.2.254.0, K7 AntiVirus 9.77.3565, Kaspersky
Mar 21, 20124.366NONO
CVE-2012-1463MEDIUM
The ELF file parser in AhnLab V3 Internet Security 2011.01.18.00, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5.2.11.5, Comodo Antivirus 7424, eSafe 7.
Mar 21, 20124.365NONO
CVE-2012-1425MEDIUM
The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware 5.1.0.1, Fortinet Antivirus 4.2.254.0, Ikar
Mar 21, 20124.365NONO
CVE-2012-1422MEDIUM
The TAR file parser in Quick Heal (aka Cat QuickHeal) 11.00, NOD32 Antivirus 5795, Norman Antivirus 6.06.12, and Rising Antivirus 22.83.00.03 allows remote attackers to bypass malw
Mar 21, 20124.365NONO
View all 29 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products29 CVEs
72%
21%
Severity distribution among all CVEs352,427 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network2 (6.9%)
Unknown27 (93.1%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (6.9%)
High0 (0.0%)
Unknown27 (93.1%)
User Interaction
None1 (3.4%)
Unknown27 (93.1%)
Required1 (3.4%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None2 (6.9%)
Unknown27 (93.1%)

Exploit Exposure

Signals from CVEs in this vendor scope (29 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
3.4% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Norman.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Norman — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Norman's Products

View all 3 CNAs →

Top CWEs