Vulnerability record · CVE-2018-5243 · published 20 August 2018
CVE-2018-5243: Symantec encryption management server uncontrolled resource consumption vulnerability
Symantec · Encryption Management Server
The Symantec Encryption Management Server (SEMS) product, prior to version 3.4.2 MP1, may be susceptible to a denial of service (DoS) exploit. A DoS attack is a type of attack whereby the perpetrator attempts to make a particular machine or network resource unavailable to its intended users by temporarily or indefinitely disrupting services of a specific host within a network.
Description
The Symantec Encryption Management Server (SEMS) product, prior to version 3.4.2 MP1, may be susceptible to a denial of service (DoS) exploit. A DoS attack is a type of attack whereby the perpetrator attempts to make a particular machine or network resource unavailable to its intended users by temporarily or indefinitely disrupting services of a specific host within a network.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| http://www.securityfocus.com/bid/105062 | Third Party AdvisoryVDB Entry |
| http://www.securitytracker.com/id/1041527 | Third Party AdvisoryVDB Entry |
| https://support.symantec.com/en_US/article.SYMSA1458.html | MitigationVendor Advisory |
| http://www.securityfocus.com/bid/105062 | Third Party AdvisoryVDB Entry |
| http://www.securitytracker.com/id/1041527 | Third Party AdvisoryVDB Entry |
| https://support.symantec.com/en_US/article.SYMSA1458.html | MitigationVendor Advisory |
Track CVE-2018-5243 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2018-5243), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.