Skip to main content

Vendor/product archive

symantec / altiris_deployment_solution CVEs

Beta · best-effort

24 CVEs tagged to symantec / altiris_deployment_solution5 Critical, 12 High, 5 Medium, 2 Low, 0 Unrated.

CVE-2009-3179

Published Sep 11, 2009

Multiple unspecified vulnerabilities in Symantec Altiris Deployment Solution 6.9 might allow remote attackers to execute arbitrary code via unknown client-side attack vectors, as…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-3178

Published Sep 11, 2009

Unspecified vulnerability in mm.exe in Symantec Altiris Deployment Solution 6.9 allows remote attackers to cause a denial of service via unknown attack vectors, as demonstrated by…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2009-3110

Published Sep 8, 2009

Race condition in the file transfer functionality in Symantec Altiris Deployment Solution 6.9.x before 6.9 SP3 Build 430 allows remote attackers to read sensitive files and preven…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-3109

Published Sep 8, 2009

Unspecified vulnerability in the AClient agent in Symantec Altiris Deployment Solution 6.9.x before 6.9 SP3 Build 430, when key-based authentication is being used between a deploy…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-3108

Published Sep 8, 2009

The Aclient GUI in Symantec Altiris Deployment Solution 6.9.x before 6.9 SP3 Build 430 installs a client executable with insecure permissions (Everyone:Full Control), which allows…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2009-3107

Published Sep 8, 2009

Symantec Altiris Deployment Solution 6.9.x before 6.9 SP3 Build 430 does not properly restrict access to the listening port for the DBManager service, which allows remote attacker…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-6828

Published Jun 8, 2009

Symantec Altiris Deployment Solution 6.x before 6.9.355 SP1 stores the Application Identity Account password in memory in cleartext, which allows local users to gain privileges an…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2008-6827

Published Jun 8, 2009

The ListView control in the Client GUI (AClient.exe) in Symantec Altiris Deployment Solution 6.x before 6.9.355 SP1 allows local users to gain SYSTEM privileges and execute arbitr…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2008-4564

Published Mar 18, 2009

Stack-based buffer overflow in wp6sr.dll in the Autonomy KeyView SDK 10.4 and earlier, as used in IBM Lotus Notes, Symantec Mail Security (SMS) products, Symantec BrightMail Appli…

CVSS 9.3 · Critical

CVE-2008-2286

Published May 18, 2008

SQL injection vulnerability in axengine.exe in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 allows remote attackers to execute arbitrary SQL commands via un…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2287

Published May 18, 2008

Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 does not properly protect the install directory, which might allow local users to gain privileges by replacing…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2288

Published May 18, 2008

Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 has insufficient access control for deletion and modification of registry keys, which allows local users to cau…

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2008-2289

Published May 18, 2008

Unspecified vulnerability in a tooltip element in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 allows local users to gain privileges via unknown attack vect…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2290

Published May 18, 2008

Unspecified vulnerability in the Agent user interface in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 allows local users to gain privileges via unknown atta…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2291

Published May 18, 2008

axengine.exe in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 generates credentials with a fixed salt or without any salt, which makes it easier for remote a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1754

Published Apr 11, 2008

Symantec Altiris Deployment Solution before 6.9.164 stores the Deployment Solution Agent (aka AClient) password in cleartext in memory, which allows local users to obtain sensitiv…

CVSS 1.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2008-1473

Published Mar 24, 2008

The Altiris Client Service (AClient.exe) in Symantec Altiris Deployment Solution 6.8.x before 6.9.164 allows local users to gain privileges via a "Shatter" style attack.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2007-5838

Published Nov 6, 2007

Aclient in Symantec Altiris Deployment Solution 6.x before 6.8.380.0 allows local users to gain local System privileges via the "Enable key-based authentication to Deployment serv…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2007-5555

Published Oct 18, 2007

Unspecified vulnerability in Symantec Altiris Deployment Solution allows attackers to obtain authentication credentials via unknown vectors, aka "Authentication Credentials Inform…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-4380

Published Aug 16, 2007

Aclient in Symantec Altiris Deployment Solution 6 before 6.8 SP2 (6.8.378) allows local users to gain local System privileges via the Log File Viewer.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort
Showing 1-24 of 24 CVEsPage 1 of 1