4.6
CVSSv2

CVE-2009-0538

Published: 18/03/2009 Updated: 11/10/2018
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Format string vulnerability in Symantec pcAnywhere prior to 12.5 SP1 allows local users to read and modify arbitrary memory locations, and cause a denial of service (application crash) or possibly have unspecified other impact, via format string specifiers in the pathname of a remote control file (aka .CHF file).

Vulnerable Product Search on Vulmon Subscribe to Product

symantec pcanywhere 11.5

symantec pcanywhere 11.0.1

symantec pcanywhere 11.0

symantec pcanywhere 10.5

symantec pcanywhere 10.0

symantec pcanywhere 12.0

symantec pcanywhere 12.1

symantec pcanywhere

symantec pcanywhere 11.5.1