PT-2002-2498 · Symantec+1 · Symantec Norton Antivirus+1

CVE-2002-1776

·

Publicado

2002-12-31

·

Atualizado

2024-08-08

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Symantec Norton AntiVirus version 2002
Description The issue allows remote attackers to bypass virus protection via a Word Macro virus with a .nch or .dbx extension, which is automatically recognized and executed as a Microsoft Office document. However, the vendor has disputed this issue, acknowledging that the initial scan is bypassed, but the Office plug-in would detect the virus before it is executed.
Recommendations For Symantec Norton AntiVirus version 2002, consider updating the Office plug-in to ensure detection of viruses before execution, as the initial scan may be bypassed. Additionally, be cautious when handling files with .nch or .dbx extensions to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2002-1776

Produtos afetados

Office
Symantec Norton Antivirus