Endpoint Encryption

Vendor:

First CVE: Dec 18, 2015 · Active for 10 years

10
Total CVEs
More Total CVEs than 88% of tracked products
2.0
Avg CVEs / Year
Higher CVE frequency than 60% of tracked products
6.3
Avg CVSS
Higher Avg CVSS than 25% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Endpoint Encryption over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 18, 2015
10 years ago
Most Recent CVE
Jan 8, 2020
2,389 days ago

CVE Severity & Scoring

Endpoint Encryption10 CVEs
All CVEs352,294 CVEs
LowMediumHigh
Attack Vector
Local5 (50.0%)
Network0 (0.0%)
Unknown1 (10.0%)
Physical0 (0.0%)
Adjacent Network4 (40.0%)
Attack Complexity
Low8 (80.0%)
High1 (10.0%)
Unknown1 (10.0%)
User Interaction
None8 (80.0%)
Unknown1 (10.0%)
Required1 (10.0%)
Privileges Required
Low5 (50.0%)
High3 (30.0%)
None1 (10.0%)
Unknown1 (10.0%)

Top CVEs

Signals from CVEs in this product scope (10 CVEs).

10 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
A privilege escalation vulnerability exists when loading DLLs during boot up and reboot in Symantec IT Management Suite 8.0 prior to 8.0 HF4 and Suite 7.6 prior to 7.6 HF7, Symante
Jan 8, 20207.826NONO
Symantec Endpoint Encryption, prior to SEE 11.3.0, may be susceptible to a privilege escalation vulnerability, which is a type of issue that allows a user to gain elevated access t
Jul 1, 20197.824NONO
Prior to SEE v11.1.3MP1, Symantec Endpoint Encryption can be susceptible to a null pointer de-reference issue, which can result in a NullPointerException that can lead to a privile
Nov 13, 20176.824NONO
In Symantec Endpoint Encryption before SEE 11.1.3HF3, a kernel memory leak is a type of resource leak that can occur when a computer program incorrectly manages memory allocations
Oct 23, 20175.721NONO
Unquoted Windows search path vulnerability in EEDService in Symantec Endpoint Encryption (SEE) 11.x before 11.1.1 allows local users to gain privileges via a Trojan horse executabl
May 14, 20167.820NONO
Symantec Endpoint Encryption, prior to SEE 11.3.0, may be susceptible to a privilege escalation vulnerability, which is a type of issue that allows a user to gain elevated access t
Jul 1, 20197.819NONO
Symantec Endpoint Encryption prior to SEE 11.2.1 MP1 may be susceptible to a Privilege Escalation vulnerability, which is a type of issue whereby an attacker may attempt to comprom
Apr 10, 20197.819NONO
Prior to SEE v11.1.3MP1, Symantec Endpoint Encryption can be susceptible to a denial of service (DoS) attack, which is a type of attack whereby the perpetrator attempts to make a p
Nov 13, 20174.519NONO
A denial of service (DoS) attack in Symantec Endpoint Encryption before SEE 11.1.3HF2 allows remote attackers to make a particular machine or network resource unavailable to its in
Oct 10, 20174.218NONO
EACommunicatorSrv.exe in the Framework Service in the client in Symantec Endpoint Encryption (SEE) before 11.1.0 allows remote authenticated users to discover credentials by trigge
Dec 18, 20152.311NONO

Exploit Exposure

Signals from CVEs in this product scope (10 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (10 CVEs).

Media Mentions

Signals from CVEs in this product scope (10 CVEs).

Top CNAs Publishing CVEs For Endpoint Encryption

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
7.617.80.3%00
11.217.80.2%00
11.1.317.80.2%00
11.1.226.80.3%00
11.1.126.80.3%00
11.1.015.70.3%00
11.117.80.2%00
11.0.117.80.3%00
11.0.026.80.3%00
11.027.80.3%00