7.1

CVE-2008-0308

Symantec Decomposer, as used in certain Symantec antivirus products including Symantec Scan Engine 5.1.2 and other versions before 5.1.6.31, allows remote attackers to cause a denial of service (memory consumption) via a malformed RAR file to the Internet Content Adaptation Protocol (ICAP) port (1344/tcp).

Data is provided by the National Vulnerability Database (NVD)
SymantecScan Engine Version <= 5.1.4.24
SymantecSymantec Antivirus Clearswift Version <= 4.3.16.39
SymantecSymantec Antivirus Filtering Domino Mpe Editionaix Version <= 3.0.12
SymantecSymantec Antivirus Filtering Domino Mpe Editionlinux Version <= 3.0.12
SymantecSymantec Antivirus Filtering Domino Mpe Editionsolaris Version <= 3.0.12
SymantecSymantec Antivirus Messaging Version <= 4.3.16.39
SymantecSymantec Antivirus Ms Isa Version <= 4.3.16.39
SymantecSymantec Antivirus Scan Engine Version <= 4.3.16.39
SymantecSymantec Mail Security Exchange Version <= 4.6.5.12
SymantecSymantec Mail Security Exchange Version <= 5.0.4.363
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.73% 0.807
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.1 8.6 6.9
AV:N/AC:M/Au:N/C:N/I:N/A:C