PT-2009-3931 · Norton+1 · Norton 360+6

Published

2009-04-29

·

Updated

2017-08-17

·

CVE-2009-1428

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Symantec AntiVirus versions prior to 10.1 MR8 Symantec Endpoint Protection versions prior to 11.0 MR1 Norton 360 version 1.0 Norton Internet Security versions 2005 through 2008
Description The issue allows remote attackers to inject arbitrary web script or HTML via a crafted e-mail message, related to two parsing errors in the Symantec Log Viewer. This can be exploited through API endpoints, although specific endpoints are not mentioned. Vulnerable parameters or variables, such as email message, can be used to inject malicious scripts.
Recommendations For Symantec AntiVirus versions prior to 10.1 MR8, update to version 10.1 MR8 or later. For Symantec Endpoint Protection versions prior to 11.0 MR1, update to version 11.0 MR1 or later. For Norton 360 version 1.0, consider upgrading to a newer version of Norton 360. For Norton Internet Security versions 2005 through 2008, consider upgrading to a newer version of Norton Internet Security. As a temporary workaround, consider restricting the handling of crafted e-mail messages to minimize the risk of exploitation.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-1428

Affected Products

Norton 360
Norton Internet Security
Symantec Antivirus
Symantec Antivirus Corporate Edition
Symantec Endpoint Protection
Symantec Endpoint Protection Client
Symantec Log Viewer