CVE-2006-5403
 
Severity Score
5.1
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Stack-based buffer overflow in an ActiveX control used in Symantec Automated Support Assistant, as used in Norton AntiVirus, Internet Security, and System Works 2005 and 2006, allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.
Desbordamiento de buffer basado en pila en el Control de ActiveX usado en Symantec Automated Support Assistant, como el usado en el AntiVirus Norton, en Internet Security y System Works 2005 y 2006, permite a los atacantes remotos con la complicidad del usuario, causar la denegación de servicio (caída) y la posibilidad de ejecutar código de su elección mediante vectores no definidos.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2006-10-18 CVE Reserved
- 2006-10-19 CVE Published
- 2024-08-07 CVE Updated
- 2024-09-08 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (10)
URL | Tag | Source |
---|---|---|
http://securityresponse.symantec.com/avcenter/security/Content/2006.10.05.html | X_refsource_confirm | |
http://securitytracker.com/id?1016988 | Vdb Entry | |
http://securitytracker.com/id?1016989 | Vdb Entry | |
http://securitytracker.com/id?1016990 | Vdb Entry | |
http://securitytracker.com/id?1016991 | Vdb Entry | |
http://www.kb.cert.org/vuls/id/400601 | Third Party Advisory | |
http://www.securityfocus.com/bid/20348 | Vdb Entry | |
http://www.vupen.com/english/advisories/2006/3929 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/29363 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/22228 | 2017-07-20 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Symantec Search vendor "Symantec" | Automated Support Assistant Search vendor "Symantec" for product "Automated Support Assistant" | * | - |
Affected
| ||||||
Symantec Search vendor "Symantec" | Norton Antivirus Search vendor "Symantec" for product "Norton Antivirus" | * | - |
Affected
| ||||||
Symantec Search vendor "Symantec" | Norton Internet Security Search vendor "Symantec" for product "Norton Internet Security" | 2006 Search vendor "Symantec" for product "Norton Internet Security" and version "2006" | - |
Affected
| ||||||
Symantec Search vendor "Symantec" | Norton System Works Search vendor "Symantec" for product "Norton System Works" | 2005 Search vendor "Symantec" for product "Norton System Works" and version "2005" | - |
Affected
| ||||||
Symantec Search vendor "Symantec" | Norton System Works Search vendor "Symantec" for product "Norton System Works" | 2006 Search vendor "Symantec" for product "Norton System Works" and version "2006" | - |
Affected
|