CVE-2009-1428
- EPSS 1.24%
- Veröffentlicht 29.04.2009 15:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple cross-site scripting (XSS) vulnerabilities in ccLgView.exe in the Symantec Log Viewer, as used in Symantec AntiVirus (SAV) before 10.1 MR8, Symantec Endpoint Protection (SEP) 11.0 before 11.0 MR1, Norton 360 1.0, and Norton Internet Security...
CVE-2008-0313
- EPSS 6.22%
- Veröffentlicht 08.04.2008 17:05:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The ActiveDataInfo.LaunchProcess method in the SymAData.ActiveDataInfo.1 ActiveX control 2.7.0.1 in SYMADATA.DLL in multiple Symantec Norton products including Norton 360 1.0, AntiVirus 2006 through 2008, Internet Security 2006 through 2008, and Syst...
CVE-2008-0312
- EPSS 18.33%
- Veröffentlicht 08.04.2008 17:05:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Stack-based buffer overflow in the AutoFix Support Tool ActiveX control 2.7.0.1 in SYMADATA.DLL in multiple Symantec Norton products, including Norton 360 1.0, AntiVirus 2006 through 2008, Internet Security 2006 through 2008, and System Works 2006 th...
- EPSS 0.05%
- Veröffentlicht 05.11.2007 19:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Disk Mount scanner in Symantec AntiVirus for Macintosh 9.x and 10.x, Norton AntiVirus for Macintosh 10.0 and 10.1, and Norton Internet Security for Macintosh 3.x, uses a directory with weak permissions (group writable), which allows local admin u...
CVE-2007-3699
- EPSS 2.38%
- Veröffentlicht 05.10.2007 21:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Decomposer component in multiple Symantec products allows remote attackers to cause a denial of service (infinite loop) via a certain value in the PACK_SIZE field of a RAR archive file header.
CVE-2007-0447
- EPSS 10.84%
- Veröffentlicht 05.10.2007 21:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Heap-based buffer overflow in the Decomposer component in multiple Symantec products allows remote attackers to execute arbitrary code via multiple crafted CAB archives.
CVE-2007-5047
- EPSS 0.06%
- Veröffentlicht 24.09.2007 00:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Norton Internet Security 2008 15.0.0.60 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the NtOp...
CVE-2007-2955
- EPSS 11.2%
- Veröffentlicht 09.08.2007 21:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple unspecified "input validation error" vulnerabilities in multiple ActiveX controls in NavComUI.dll, as used in multiple Norton AntiVirus, Internet Security, and System Works products for 2006, allows remote attackers to execute arbitrary code...
CVE-2007-3673
- EPSS 0.17%
- Veröffentlicht 15.07.2007 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Symantec symtdi.sys before 7.0.0, as distributed in Symantec AntiVirus Corporate Edition 9 through 10.1 and Client Security 2.0 through 3.1, Norton AntiSpam 2005, and Norton AntiVirus, Internet Security, Personal Firewall, and System Works 2005 and 2...
- EPSS 73.76%
- Veröffentlicht 16.05.2007 20:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in the ISAlertDataCOM ActiveX control in ISLALERT.DLL for Norton Personal Firewall 2004 and Internet Security 2004 allows remote attackers to execute arbitrary code via long arguments to the (1) Get and (2) Set functions.