Vulnerabilities > CVE-2007-0564 - Unspecified vulnerability in Symantec web Security
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN symantec
nessus
Summary
The license registering interface in Symantec Web Security (SWS) before 3.0.1.85 allows attackers to cause a denial of service (CPU consumption) by submitting a large file.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 8 |
Nessus
NASL family | CGI abuses |
NASL id | SYMANTEC_WS_DOS.NASL |
description | According to its banner, the version of Symantec Web Security on the remote host is vulnerable to denial of service and cross-site scripting attacks. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 25446 |
published | 2007-06-07 |
reporter | This script is Copyright (C) 2007-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/25446 |
title | Symantec Web Security (SWS) Multiple Vulnerabilities |
code |
|
References
- http://secunia.com/advisories/23896
- http://secunia.com/advisories/23896
- http://securityresponse.symantec.com/avcenter/security/Content/2007.01.24c.html
- http://securityresponse.symantec.com/avcenter/security/Content/2007.01.24c.html
- http://securitytracker.com/id?1017558
- http://securitytracker.com/id?1017558
- http://www.vupen.com/english/advisories/2007/0330
- http://www.vupen.com/english/advisories/2007/0330