10

CVE-2010-0108

Buffer overflow in the cliproxy.objects.1 ActiveX control in the Symantec Client Proxy (CLIproxy.dll) in Symantec AntiVirus 10.0.x, 10.1.x before MR9, and 10.2.x before MR4; and Symantec Client Security 3.0.x and 3.1.x before MR9 allows remote attackers to execute arbitrary code via a long argument to the SetRemoteComputerName function.

Data is provided by the National Vulnerability Database (NVD)
SymantecAntivirus Version10.0
SymantecAntivirus Version10.0.1
SymantecAntivirus Version10.0.1.1
SymantecAntivirus Version10.0.2
SymantecAntivirus Version10.0.2.1
SymantecAntivirus Version10.0.2.2
SymantecAntivirus Version10.0.3
SymantecAntivirus Version10.0.4
SymantecAntivirus Version10.0.5
SymantecAntivirus Version10.0.6
SymantecAntivirus Version10.0.7
SymantecAntivirus Version10.0.8
SymantecAntivirus Version10.0.9
SymantecAntivirus Version10.1
SymantecAntivirus Version10.1 Editioncorporate
SymantecAntivirus Version10.1 Updatemp1 Editioncorporate
SymantecAntivirus Version10.1 Updatemr4 Editioncorporate
SymantecAntivirus Version10.1 Updatemr5 Editioncorporate
SymantecAntivirus Version10.1 Updatemr7 Editioncorporate
SymantecAntivirus Version10.1.0.1 Editioncorporate
SymantecAntivirus Version10.1.4 Editioncorporate
SymantecAntivirus Version10.1.4.1 Editioncorporate
SymantecAntivirus Version10.1.5 Editioncorporate
SymantecAntivirus Version10.1.5.1 Editioncorporate
SymantecAntivirus Version10.1.6 Editioncorporate
SymantecAntivirus Version10.1.6.1 Editioncorporate
SymantecAntivirus Version10.1.7 Editioncorporate
SymantecAntivirus Version10.2 Editioncorporate
SymantecAntivirus Version10.2 Updatemr2 Editioncorporate
SymantecAntivirus Version10.2 Updatemr3 Editioncorporate
SymantecClient Security Version3.0
SymantecClient Security Version3.0 Updatemr1
SymantecClient Security Version3.0 Updatemr2
SymantecClient Security Version3.0.0.359
SymantecClient Security Version3.0.1.1000
SymantecClient Security Version3.0.1.1007
SymantecClient Security Version3.0.1.1008
SymantecClient Security Version3.0.2
SymantecClient Security Version3.0.2.2000
SymantecClient Security Version3.0.2.2001
SymantecClient Security Version3.0.2.2010
SymantecClient Security Version3.0.2.2011
SymantecClient Security Version3.0.2.2020
SymantecClient Security Version3.0.2.2021
SymantecClient Security Version3.1
SymantecClient Security Version3.1 Updatemr4
SymantecClient Security Version3.1 Updatemr5
SymantecClient Security Version3.1 Updatemr7
SymantecClient Security Version3.1.0.396
SymantecClient Security Version3.1.0.401
SymantecClient Security Version3.1.394
SymantecClient Security Version3.1.400
SymantecClient Security Version3.1.401
SymantecEndpoint Protection Version11.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 13.17% 0.939
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.