Skip to main content

Vendor/product archive

symantec / liveupdate CVEs

Beta · best-effort

5 CVEs tagged to symantec / liveupdate1 Critical, 0 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2002-0344

Published Jun 25, 2002

Symantec LiveUpdate 1.5 and earlier in Norton Antivirus stores usernames and passwords for a local LiveUpdate server in cleartext in the registry, which may allow remote attackers…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1125

Published Oct 5, 2001

Symantec LiveUpdate before 1.6 does not use cryptography to ensure the integrity of download files, which allows remote attackers to execute arbitrary code via DNS spoofing of the…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-1126

Published Oct 5, 2001

Symantec LiveUpdate 1.4 through 1.6, and possibly later versions, allows remote attackers to cause a denial of service (flood) via DNS spoofing of the update.symantec.com site.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0549

Published Aug 14, 2001

Symantec LiveUpdate 1.5 stores proxy passwords in cleartext in a registry key, which could allow local users to obtain the passwords.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1