Vulnerabilities > Symantec > Altiris Notification Server > Critical

DATE CVE VULNERABILITY TITLE RISK
2009-11-25 CVE-2009-3033 Buffer Errors vulnerability in Symantec products
Buffer overflow in the RunCmd method in the Altiris eXpress NS Console Utilities ActiveX control in AeXNSConsoleUtilities.dll in the web console in Symantec Altiris Deployment Solution 6.9.x, Altiris Notification Server 6.0.x, and Management Platform 7.0.x allows remote attackers to execute arbitrary code via a long string in the second argument.
network
symantec CWE-119
critical
9.3
2009-11-03 CVE-2009-3031 Buffer Errors vulnerability in Symantec products
Stack-based buffer overflow in the BrowseAndSaveFile method in the Altiris eXpress NS ConsoleUtilities ActiveX control 6.0.0.1846 in AeXNSConsoleUtilities.dll in Symantec Altiris Notification Server (NS) 6.0 before R12, Deployment Server 6.8 and 6.9 in Symantec Altiris Deployment Solution 6.9 SP3, and Symantec Management Platform (SMP) 7.0 before SP3 allows remote attackers to execute arbitrary code via a long string in the second argument.
network
symantec CWE-119
critical
9.3