peter bassill · operator
$ cve CVE-2006-4855 JSON

CVE-2006-4855 EXPLOIT

4.9
MEDIUM · CVSS 2.0 · EPSS 1.3% (pctl 70)

Patch early

A public exploit exists.

Description

The \Device\SymEvent driver in Symantec Norton Personal Firewall 2006 9.1.0.33, and other versions of Norton Personal Firewall, Internet Security, AntiVirus, SystemWorks, Symantec Client Security SCS 1.x, 2.x, 3.0, and 3.1, Symantec AntiVirus Corporate Edition SAVCE 8.x, 9.x, 10.0, and 10.1, Symantec pcAnywhere 11.5 only, and Symantec Host, allows local users to cause a denial of service (system crash) via invalid data, as demonstrated by calling DeviceIoControl to send the data.

Scoring

CVSS4.9 (MEDIUM, v2.0)
VectorAV:L/AC:L/Au:N/C:N/I:N/A:C
EPSS1.32% — more likely to be exploited than 70% of all CVEs
WeaknessCWE-399
On CISA KEVno
Public exploityes
Published2006-09-19
Last modified2026-06-16

Affected (7)

VendorProduct
symantecclient security
symantechost ids
symantecnorton antivirus
symantecnorton internet security
symantecnorton personal firewall
symantecnorton system works
symantecpcanywhere

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD