9.3
CVSSv2

CVE-2009-3109

Published: 08/09/2009 Updated: 07/02/2013
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Unspecified vulnerability in the AClient agent in Symantec Altiris Deployment Solution 6.9.x prior to 6.9 SP3 Build 430, when key-based authentication is being used between a deployment server and a client, allows remote malicious users to bypass authentication and execute arbitrary commands as SYSTEM by spoofing the deployment server and sending "alternate commands" before the handshake is completed.

Vulnerable Product Search on Vulmon Subscribe to Product

symantec altiris deployment solution 6.9