Vulnerabilities > CVE-2007-2896 - Denial of Service vulnerability in Symantec Enterprise Security Manager 6.5.3

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL

Summary

Race condition in the Symantec Enterprise Security Manager (ESM) 6.5.3 managers and agents on Windows before 20070524 allows remote attackers to cause a denial of service (CPU consumption and application hang) via certain network scans to ESM ports. The vendor has released an update addressing this issue: Symantec Enterprise Security Manager 6.5.3 Symantec Mini Update Package.zip http://www.symantec.com/avcenter/security/ESM/esmPU/Mini Update Package.zip

Vulnerable Configurations

Part Description Count
OS
Microsoft
1
Application
Symantec
1