CVE Vulnerabilities

CVE-2006-0232

Published: Apr 25, 2006 | Modified: Oct 19, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, stores sensitive log and virus definition files under the web root with insufficient access control, which allows remote attackers to obtain the information via direct requests.

Affected Software

Name Vendor Start Version End Version
Antivirus_scan_engine Symantec 5.0.0.24 (including) 5.0.0.24 (including)

References