Endpoint Detection Response Symantec Endpoint Detection Response

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Symantec Endpoint Detection Response.

By the Year

In 2026 there have been 0 vulnerabilities in Symantec Endpoint Detection Response. Last year, in 2025 Endpoint Detection Response had 1 security vulnerability published. Right now, Endpoint Detection Response is on track to have less security vulnerabilities in 2026 than it did last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 1 0.00
2024 0 0.00
2023 0 0.00
2022 1 9.80
2021 0 0.00
2020 3 7.50

It may take a day or so for new Endpoint Detection Response vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Symantec Endpoint Detection Response Security Vulnerabilities

OS Command Injection in Sangfor EDR 3.2.16/17/19 (China only)
CVE-2025-34041 - June 24, 2025

An OS command injection vulnerability exists in the Chinese versions of Sangfor Endpoint Detection and Response (EDR) management platform versions 3.2.16, 3.2.17, and 3.2.19. The vulnerability allows unauthenticated attackers to construct and send malicious HTTP requests to the EDR Manager interface, leading to arbitrary command execution with elevated privileges. This flaw only affects the Chinese-language EDR builds. Exploitation evidence was observed by the Shadowserver Foundation on 2025-02-04 UTC.

Shell injection

SEDR Appliance <4.7.0 PrivEsc Vulnerability
CVE-2022-37015 9.8 - Critical - November 08, 2022

Symantec Endpoint Detection and Response (SEDR) Appliance, prior to 4.7.0, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.

Symantec Endpoint Detection & Response, prior to 4.5, may be susceptible to an information disclosure issue, which is a type of vulnerability
CVE-2020-12593 - November 18, 2020

Symantec Endpoint Detection & Response, prior to 4.5, may be susceptible to an information disclosure issue, which is a type of vulnerability that could potentially allow unauthorized access to data.

Symantec Endpoint Detection And Response, prior to 4.4, may be susceptible to an information disclosure issue, which is a type of vulnerability
CVE-2020-5839 7.5 - High - July 08, 2020

Symantec Endpoint Detection And Response, prior to 4.4, may be susceptible to an information disclosure issue, which is a type of vulnerability that could potentially allow unauthorized access to data.

Information Disclosure

Symantec Endpoint Detection and Response (SEDR), prior to 4.3.0, may be susceptible to a cross site scripting (XSS) issue
CVE-2019-19547 - January 13, 2020

Symantec Endpoint Detection and Response (SEDR), prior to 4.3.0, may be susceptible to a cross site scripting (XSS) issue. XSS is a type of issue that can enable attackers to inject client-side scripts into web pages viewed by other users. An XSS vulnerability may be used by attackers to potentially bypass access controls such as the same-origin policy.

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Symantec Endpoint Detection Response or by Symantec? Click the Watch button to subscribe.

Symantec
Vendor

subscribe