Vulnerabilities > CVE-2010-0106 - Unspecified vulnerability in Symantec Antivirus, Client Security and Endpoint Protection
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN symantec
nessus
Summary
The on-demand scanning in Symantec AntiVirus 10.0.x and 10.1.x before MR9, AntiVirus 10.2.x, and Client Security 3.0.x and 3.1.x before MR9, when Tamper protection is disabled, allows remote attackers to cause a denial of service (prevention of on-demand scanning) via "specific events" that prevent the user from having read access to unspecified resources.
Vulnerable Configurations
Nessus
NASL family | Windows |
NASL id | SAVCE_SYM10-004.NASL |
description | The version of Symantec Antivirus Corporate Edition (SAVCE) or Symantec Client Security is potentially affected by multiple vulnerabilities : - If Symantec Tamper protection is disabled, it is possible to bypass scanning. (CVE-2010-0106) - A browser-based input validation issue exists in SYMLTCOM.dll that can lead to a buffer overflow. (CVE-2010-0107) - A buffer overflow exists in the Symantec Client Proxy, |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 69956 |
published | 2013-09-18 |
reporter | This script is Copyright (C) 2013-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/69956 |
title | Symantec AntiVirus Multiple Vulnerabilities (SYM10-002 / SYM10-003 / SYM10-004) |
code |
|
References
- http://osvdb.org/62414
- http://osvdb.org/62414
- http://secunia.com/advisories/38653
- http://secunia.com/advisories/38653
- http://www.securityfocus.com/bid/38219
- http://www.securityfocus.com/bid/38219
- http://www.securitytracker.com/id?1023621
- http://www.securitytracker.com/id?1023621
- http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2010&suid=20100217_00
- http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2010&suid=20100217_00
- http://www.vupen.com/english/advisories/2010/0410
- http://www.vupen.com/english/advisories/2010/0410
- https://exchange.xforce.ibmcloud.com/vulnerabilities/56354
- https://exchange.xforce.ibmcloud.com/vulnerabilities/56354