CVE-2010-0107

Buffer overflow in an ActiveX control (SYMLTCOM.dll) in Symantec N360 1.0 and 2.0; Norton Internet Security, AntiVirus, SystemWorks, and Confidential 2006 through 2008; and Symantec Client Security 3.0.x before 3.1 MR9, and 3.1.x before MR9; allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.  NOTE: this is only a vulnerability if the attacker can "masquerade as an authorized site."
Severity
UNKNOWN
AV:N/AC:M/Au:N/C:C/I:C/A:C
Atk. Vector
NETWORK
Atk. Complexity
MEDIUM
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
VendorProductVersion
symantecclient_security
3.0
symantecclient_security
3.0.1.1000
symantecclient_security
3.0.1.1001
symantecclient_security
3.0.1.1007
symantecclient_security
3.0.1.1008
symantecclient_security
3.0.1.1009
symantecclient_security
3.0.2
symantecclient_security
3.0.2.2000
symantecclient_security
3.0.2.2001
symantecclient_security
3.0.2.2002
symantecclient_security
3.0.2.2010
symantecclient_security
3.0.2.2011
symantecclient_security
3.0.2.2020
symantecclient_security
3.0.2.2021
symantecclient_security
3.1
symantecclient_security
3.1
symantecclient_security
3.1
symantecclient_security
3.1
symantecclient_security
3.1.0.396
symantecclient_security
3.1.0.401
symantecclient_security
3.1.396
symantecclient_security
3.1.400
symantecclient_security
3.1.401
symantecnorton_360
1.0
symantecnorton_360
2.0
𝑥
= Vulnerable software versions