CVE-2015-8149: Symantec Encryption Management Server

High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.

The LDAP service in Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows remote attackers to cause a denial of service (heap memory corruption and service outage) via crafted requests.

Affected products

  • Symantec Encryption Management Server: up to and including 3.3.2

Published 2016-02-18. Last modified 2026-06-17.