Vulnerability Description
The license registering interface in Symantec Web Security (SWS) before 3.0.1.85 allows attackers to cause a denial of service (CPU consumption) by submitting a large file.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Symantec | Web Security | <= 3.0.1.72 |
References
- http://secunia.com/advisories/23896PatchVendor Advisory
- http://securityresponse.symantec.com/avcenter/security/Content/2007.01.24c.htmlPatch
- http://securitytracker.com/id?1017558
- http://www.vupen.com/english/advisories/2007/0330
- http://secunia.com/advisories/23896PatchVendor Advisory
- http://securityresponse.symantec.com/avcenter/security/Content/2007.01.24c.htmlPatch
- http://securitytracker.com/id?1017558
- http://www.vupen.com/english/advisories/2007/0330
FAQ
What is CVE-2007-0564?
CVE-2007-0564 is a vulnerability with a CVSS score of 4.0 (MEDIUM). The license registering interface in Symantec Web Security (SWS) before 3.0.1.85 allows attackers to cause a denial of service (CPU consumption) by submitting a large file.
How severe is CVE-2007-0564?
CVE-2007-0564 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-0564?
Check the references section above for vendor advisories and patch information. Affected products include: Symantec Web Security.