Show filters
15 Total Results
Displaying 11-15 of 15
Sort by:
Attacker Value
Unknown

CVE-2006-4802

Disclosure Date: September 14, 2006 (last updated October 04, 2023)
Format string vulnerability in the Real Time Virus Scan service in Symantec AntiVirus Corporate Edition 8.1 up to 10.0, and Client Security 1.x up to 3.0, allows local users to execute arbitrary code via an unspecified vector related to alert notification messages, a different vector than CVE-2006-3454, a "second format string vulnerability" as found by the vendor.
0
Attacker Value
Unknown

CVE-2006-3454

Disclosure Date: September 14, 2006 (last updated October 04, 2023)
Multiple format string vulnerabilities in Symantec AntiVirus Corporate Edition 8.1 up to 10.0, and Client Security 1.x up to 3.0, allow local users to execute arbitrary code via format strings in (1) Tamper Protection and (2) Virus Alert Notification messages.
0
Attacker Value
Unknown

CVE-2005-0249

Disclosure Date: February 08, 2005 (last updated February 22, 2025)
Heap-based buffer overflow in the DEC2EXE module for Symantec AntiVirus Library allows remote attackers to execute arbitrary code via a UPX compressed file containing a negative virtual offset to a crafted PE header.
0
Attacker Value
Unknown

CVE-2000-0477

Disclosure Date: June 14, 2000 (last updated February 22, 2025)
Buffer overflow in Norton Antivirus for Exchange (NavExchange) allows remote attackers to cause a denial of service via a .zip file that contains long file names.
0
Attacker Value
Unknown

CVE-2000-0478

Disclosure Date: June 14, 2000 (last updated February 22, 2025)
In some cases, Norton Antivirus for Exchange (NavExchange) enters a "fail-open" state which allows viruses to pass through the server.
0