Client Security
Vendor:
First CVE: Jul 7, 2004 · Active for 22 years
27
Total CVEs
More Total CVEs than 96% of tracked products
4.5
Avg CVEs / Year
Higher CVE frequency than 86% of tracked products
6.6
Avg CVSS
Higher Avg CVSS than 33% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Client Security over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jul 7, 2004
22 years ago
Most Recent CVE
Feb 23, 2010
5,995 days ago
CVE Severity & Scoring
Client Security27 CVEs
11%
41%
48%
All CVEs352,294 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown27 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown27 (100.0%)
User Interaction
None0 (0.0%)
Unknown27 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown27 (100.0%)
Top CVEs
Signals from CVEs in this product scope (27 CVEs).
27 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-1429HIGH The Intel LANDesk Common Base Agent (CBA) in Symantec Alert Management System 2 (AMS2), as used in Symantec System Center (SSS); Symantec AntiVirus Server; Symantec AntiVirus Centr | Apr 29, 2009 | 10.0 | 89 | NO | YES |
CVE-2006-2630HIGH Stack-based buffer overflow in Symantec Antivirus 10.1 and Client Security 3.1 allows remote attackers to execute arbitrary code via unknown attack vectors. | May 27, 2006 | 10.0 | 81 | NO | YES |
CVE-2009-1430HIGH Multiple stack-based buffer overflows in IAO.EXE in the Intel Alert Originator Service in Symantec Alert Management System 2 (AMS2), as used in Symantec System Center (SSS); Symant | Apr 29, 2009 | 9.3 | 71 | NO | YES |
CVE-2010-0108HIGH Buffer overflow in the cliproxy.objects.1 ActiveX control in the Symantec Client Proxy (CLIproxy.dll) in Symantec AntiVirus 10.0.x, 10.1.x before MR9, and 10.2.x before MR4; and Sy | Feb 19, 2010 | 10.0 | 47 | NO | YES |
CVE-2004-0444HIGH Multiple vulnerabilities in SYMDNS.SYS for Symantec Norton Internet Security and Professional 2002 through 2004, Norton Personal Firewall 2002 through 2004, Norton AntiSpam 2004, C | Jul 7, 2004 | 10.0 | 30 | NO | NO |
CVE-2010-0107HIGH Buffer overflow in an ActiveX control (SYMLTCOM.dll) in Symantec N360 1.0 and 2.0; Norton Internet Security, AntiVirus, SystemWorks, and Confidential 2006 through 2008; and Symante | Feb 23, 2010 | 9.3 | 28 | NO | NO |
CVE-2005-0249HIGH Heap-based buffer overflow in the DEC2EXE module for Symantec AntiVirus Library allows remote attackers to execute arbitrary code via a UPX compressed file containing a negative vi | Feb 8, 2005 | 7.5 | 27 | NO | NO |
CVE-2009-1431HIGH XFR.EXE in the Intel File Transfer service in the console in Symantec Alert Management System 2 (AMS2), as used in Symantec System Center (SSS); Symantec AntiVirus Server; Symantec | Apr 29, 2009 | 9.3 | 26 | NO | NO |
CVE-2007-3699HIGH The Decomposer component in multiple Symantec products allows remote attackers to cause a denial of service (infinite loop) via a certain value in the PACK_SIZE field of a RAR arch | Oct 5, 2007 | 9.3 | 26 | NO | NO |
CVE-2007-3673MEDIUM Symantec symtdi.sys before 7.0.0, as distributed in Symantec AntiVirus Corporate Edition 9 through 10.1 and Client Security 2.0 through 3.1, Norton AntiSpam 2005, and Norton AntiVi | Jul 15, 2007 | 6.9 | 26 | NO | YES |
Exploit Exposure
Signals from CVEs in this product scope (27 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
3 CVEs
11.1% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
10 CVEs
37.0% of CVEs· 91st percentile
Social Chatter
Signals from CVEs in this product scope (27 CVEs).
Media Mentions
Signals from CVEs in this product scope (27 CVEs).
Top CNAs Publishing CVEs For Client Security
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 3.1.401 | 10 | 6.7 | 4.5% | 0 | 3 |
| 3.1.400 | 11 | 7.0 | 10.8% | 0 | 4 |
| 3.1.396 | 8 | 6.9 | 3.1% | 0 | 2 |
| 3.1.394 | 10 | 6.8 | 11.2% | 0 | 4 |
| 3.1.0.401 | 5 | 5.6 | 5.8% | 0 | 3 |
| 3.1.0.396 | 5 | 5.6 | 5.8% | 0 | 3 |
| 3.1 | 15 | 6.4 | 7.6% | 0 | 6 |
| 3.0.2.2021 | 10 | 7.0 | 18.2% | 0 | 5 |
| 3.0.2.2020 | 10 | 7.6 | 25.5% | 0 | 6 |
| 3.0.2.2011 | 10 | 7.0 | 18.2% | 0 | 5 |
| 3.0.2.2010 | 10 | 7.6 | 25.5% | 0 | 6 |
| 3.0.2.2002 | 8 | 7.3 | 20.2% | 0 | 4 |
| 3.0.2.2001 | 10 | 7.0 | 18.2% | 0 | 5 |
| 3.0.2.2000 | 10 | 7.0 | 18.2% | 0 | 5 |
| 3.0.2 | 8 | 6.5 | 21.5% | 0 | 5 |
| 3.0.1.1009 | 6 | 6.7 | 25.3% | 0 | 4 |
| 3.0.1.1008 | 9 | 7.3 | 20.2% | 0 | 5 |
| 3.0.1.1007 | 10 | 7.0 | 18.2% | 0 | 5 |
| 3.0.1.1001 | 7 | 7.7 | 23.1% | 0 | 4 |
| 3.0.1.1000 | 10 | 7.0 | 18.2% | 0 | 5 |