Skip to main content

Vendor/product archive

symantec / antivirus_scan_engine CVEs

Beta · best-effort

10 CVEs tagged to symantec / antivirus_scan_engine4 Critical, 2 High, 3 Medium, 1 Low, 0 Unrated.

CVE-2006-0230

Published Apr 25, 2006

Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, uses a client-side check to verify a password, which allows remote attackers to gain administrator privi…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-0231

Published Apr 25, 2006

Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, uses the same private DSA key for each installation, which allows remote attackers to conduct man-in-the…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0232

Published Apr 25, 2006

Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, stores sensitive log and virus definition files under the web root with insufficient access control, whi…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-3217

Published Oct 14, 2005

Multiple interpretation error in unspecified versions of Symantec Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-0249

Published Feb 8, 2005

Heap-based buffer overflow in the DEC2EXE module for Symantec AntiVirus Library allows remote attackers to execute arbitrary code via a UPX compressed file containing a negative v…

CVSS 7.5 · High
Showing 1-10 of 10 CVEsPage 1 of 1