CVE Vulnerabilities

CVE-2011-0688

Improper Authentication

Published: Jan 31, 2011 | Modified: Aug 17, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Intel Alert Management System (aka AMS or AMS2), as used in Symantec Antivirus Corporate Edition (SAVCE) 10.x before 10.1 MR10, Symantec System Center (SSC) 10.x, and Symantec Quarantine Server 3.5 and 3.6, allows remote attackers to execute arbitrary commands via crafted messages over TCP, as discovered by Junaid Bohio, a different vulnerability than CVE-2010-0110 and CVE-2010-0111. NOTE: some of these details are obtained from third party information.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

Name Vendor Start Version End Version
Antivirus Symantec 10.0 (including) 10.0 (including)
Antivirus Symantec 10.0-mr1 (including) 10.0-mr1 (including)
Antivirus Symantec 10.0-mr2 (including) 10.0-mr2 (including)
Antivirus Symantec 10.0.1 (including) 10.0.1 (including)
Antivirus Symantec 10.0.1.1 (including) 10.0.1.1 (including)
Antivirus Symantec 10.0.1.2 (including) 10.0.1.2 (including)
Antivirus Symantec 10.0.2 (including) 10.0.2 (including)
Antivirus Symantec 10.0.2.1 (including) 10.0.2.1 (including)
Antivirus Symantec 10.0.2.2 (including) 10.0.2.2 (including)
Antivirus Symantec 10.0.3 (including) 10.0.3 (including)
Antivirus Symantec 10.0.4 (including) 10.0.4 (including)
Antivirus Symantec 10.0.5 (including) 10.0.5 (including)
Antivirus Symantec 10.0.6 (including) 10.0.6 (including)
Antivirus Symantec 10.0.7 (including) 10.0.7 (including)
Antivirus Symantec 10.0.8 (including) 10.0.8 (including)
Antivirus Symantec 10.0.9 (including) 10.0.9 (including)
Antivirus Symantec 10.1 (including) 10.1 (including)
Antivirus Symantec 10.1-mp1 (including) 10.1-mp1 (including)
Antivirus Symantec 10.1-mr4 (including) 10.1-mr4 (including)
Antivirus Symantec 10.1-mr5 (including) 10.1-mr5 (including)
Antivirus Symantec 10.1-mr6 (including) 10.1-mr6 (including)
Antivirus Symantec 10.1-mr7 (including) 10.1-mr7 (including)
Antivirus Symantec 10.1.0.1 (including) 10.1.0.1 (including)
Antivirus Symantec 10.1.4 (including) 10.1.4 (including)
Antivirus Symantec 10.1.4.1 (including) 10.1.4.1 (including)
Antivirus Symantec 10.1.5 (including) 10.1.5 (including)
Antivirus Symantec 10.1.5.1 (including) 10.1.5.1 (including)
Antivirus Symantec 10.1.6 (including) 10.1.6 (including)
Antivirus Symantec 10.1.6.1 (including) 10.1.6.1 (including)
Antivirus Symantec 10.1.7 (including) 10.1.7 (including)
Antivirus Symantec 10.1.8 (including) 10.1.8 (including)
Antivirus Symantec 10.1.9 (including) 10.1.9 (including)
Antivirus Symantec 10.2 (including) 10.2 (including)
Antivirus Symantec 10.2-mr2 (including) 10.2-mr2 (including)
Antivirus Symantec 10.2-mr3 (including) 10.2-mr3 (including)

Potential Mitigations

References