Buffer Overflow in Symantec Altiris Deployment Solution and Notification Server
CVE-2009-3033
Currently unrated
Key Information:
- Vendor
Symantec
- Vendor
- CVE Published:
- 25 November 2009
What is CVE-2009-3033?
The vulnerability arises from a buffer overflow in the RunCmd method within the ActiveX control AeXNSConsoleUtilities.dll used by the web console of Symantec's Altiris Deployment Solution, Notification Server, and Management Platform. Attackers can exploit this vulnerability by sending specially crafted input, allowing them to execute arbitrary code on the affected system. This could lead to unauthorized access or control over sensitive information.