Vulnerabilities > CVE-2007-0564 - Denial-Of-Service vulnerability in Web Security
Attack vector
NETWORK Attack complexity
LOW Privileges required
SINGLE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
The license registering interface in Symantec Web Security (SWS) before 3.0.1.85 allows attackers to cause a denial of service (CPU consumption) by submitting a large file. This vulnerablity is addressed in the following product release: Symantec, Symantec Web Security, 3.0.1.85
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 8 |
Nessus
NASL family | CGI abuses |
NASL id | SYMANTEC_WS_DOS.NASL |
description | According to its banner, the version of Symantec Web Security on the remote host is vulnerable to denial of service and cross-site scripting attacks. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 25446 |
published | 2007-06-07 |
reporter | This script is Copyright (C) 2007-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/25446 |
title | Symantec Web Security (SWS) Multiple Vulnerabilities |
code |
|