CVE Vulnerabilities

CVE-2011-0688

Improper Authentication

Published: Jan 31, 2011 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Intel Alert Management System (aka AMS or AMS2), as used in Symantec Antivirus Corporate Edition (SAVCE) 10.x before 10.1 MR10, Symantec System Center (SSC) 10.x, and Symantec Quarantine Server 3.5 and 3.6, allows remote attackers to execute arbitrary commands via crafted messages over TCP, as discovered by Junaid Bohio, a different vulnerability than CVE-2010-0110 and CVE-2010-0111. NOTE: some of these details are obtained from third party information.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

NameVendorStart VersionEnd Version
AntivirusSymantec10.0 (including)10.0 (including)
AntivirusSymantec10.0-mr1 (including)10.0-mr1 (including)
AntivirusSymantec10.0-mr2 (including)10.0-mr2 (including)
AntivirusSymantec10.0.1 (including)10.0.1 (including)
AntivirusSymantec10.0.1.1 (including)10.0.1.1 (including)
AntivirusSymantec10.0.1.2 (including)10.0.1.2 (including)
AntivirusSymantec10.0.2 (including)10.0.2 (including)
AntivirusSymantec10.0.2.1 (including)10.0.2.1 (including)
AntivirusSymantec10.0.2.2 (including)10.0.2.2 (including)
AntivirusSymantec10.0.3 (including)10.0.3 (including)
AntivirusSymantec10.0.4 (including)10.0.4 (including)
AntivirusSymantec10.0.5 (including)10.0.5 (including)
AntivirusSymantec10.0.6 (including)10.0.6 (including)
AntivirusSymantec10.0.7 (including)10.0.7 (including)
AntivirusSymantec10.0.8 (including)10.0.8 (including)
AntivirusSymantec10.0.9 (including)10.0.9 (including)
AntivirusSymantec10.1 (including)10.1 (including)
AntivirusSymantec10.1-mp1 (including)10.1-mp1 (including)
AntivirusSymantec10.1-mr4 (including)10.1-mr4 (including)
AntivirusSymantec10.1-mr5 (including)10.1-mr5 (including)
AntivirusSymantec10.1-mr6 (including)10.1-mr6 (including)
AntivirusSymantec10.1-mr7 (including)10.1-mr7 (including)
AntivirusSymantec10.1.0.1 (including)10.1.0.1 (including)
AntivirusSymantec10.1.4 (including)10.1.4 (including)
AntivirusSymantec10.1.4.1 (including)10.1.4.1 (including)
AntivirusSymantec10.1.5 (including)10.1.5 (including)
AntivirusSymantec10.1.5.1 (including)10.1.5.1 (including)
AntivirusSymantec10.1.6 (including)10.1.6 (including)
AntivirusSymantec10.1.6.1 (including)10.1.6.1 (including)
AntivirusSymantec10.1.7 (including)10.1.7 (including)
AntivirusSymantec10.1.8 (including)10.1.8 (including)
AntivirusSymantec10.1.9 (including)10.1.9 (including)
AntivirusSymantec10.2 (including)10.2 (including)
AntivirusSymantec10.2-mr2 (including)10.2-mr2 (including)
AntivirusSymantec10.2-mr3 (including)10.2-mr3 (including)

Potential Mitigations

References