Home Home | Current issue Current issue
Login: Password: Forget password? / Register New User
Games Graphics & Design MP3 & Audio Internet & Networks System & Utilities Home & Education Business WebDev SoftDev
Issue: August 2007 > System & Utilities > Article "Symantec announces ActiveX vulnerability"
Advertisement on Onekit.com Software Magazine

Symantec announces ActiveX vulnerability (Symantec announces ActiveX vulnerability)  Symantec announces ActiveX vulnerability

System & Utilities
Symantec has revealed details of a vulnerability in two ActiveX controls used in its Norton Windows antivirus software.

The vulnerability was reported by security research firm Secunia as "highly critical" and Symantec urged users to update their software immediately.

Norton AntiVirus 2006, Norton Internet Security 2006, Norton SystemWorks 2006 and Norton Internet Security 2005 AntiSpyware Edition are affected.

Symantec's corporate security software is not affected.

The problem in the ActiveX controls could allow a hacker to execute code on an affected PC.

It comes about because of an input validation error, which fails to analyse incoming data for malicious commands before executing them.

To exploit the vulnerability, hackers could send emails to users inviting them to click on a link to a website containing the exploit code, Symantec said.
August 11, 2007 Author: Richard Thurston
There are no users' comments | Post your comment

Related Links:
Advertisement Advertisement
about / contact us | Copyright 2003-2009 - Software Magazine, onekit.com, Legal Notices