Unspecified vulnerability in Symantec Reporting Server 1.0.197.0, and other versions before 1.0.224.0, as used in Symantec Client Security 3.1 and later, and Symantec AntiVirus Corporate Edition (SAV CE) 10.1 and later, allows attackers to "disable the authentication system" and bypass authentication via unknown vectors.
2007-06-06T22:30:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 9.0 (HIGH)
AV:N/AC:L/Au:S/C:C/I:C/A:C
8.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | symantec | client_security | 3.1 | Yes |
Application | symantec | client_security | 3.1.394 | Yes |
Application | symantec | client_security | 3.1.396 | Yes |
Application | symantec | client_security | 3.1.400 | Yes |
Application | symantec | client_security | 3.1.401 | Yes |
Application | symantec | norton_antivirus | 10.0.2.2021 | Yes |
Application | symantec | norton_antivirus | 10.1 | Yes |
Application | symantec | norton_antivirus | 10.1.396 | Yes |
Application | symantec | norton_antivirus | 10.1.400 | Yes |
Application | symantec | norton_antivirus | 10.1.401 | Yes |
Application | symantec | reporting_server | ≤ 1.0.197.0 | Yes |