peter bassill · operator
$ cve CVE-2007-1793 JSON

CVE-2007-1793 EXPLOIT

4.9
MEDIUM · CVSS 2.0 · EPSS 1.7% (pctl 77)

Patch early

A public exploit exists.

Description

SPBBCDrv.sys in Symantec Norton Personal Firewall 2006 9.1.0.33 and 9.1.1.7 does not validate certain arguments before being passed to hooked SSDT function handlers, which allows local users to cause a denial of service (crash) or possibly execute arbitrary code via crafted arguments to the (1) NtCreateMutant and (2) NtOpenEvent functions. NOTE: it was later reported that Norton Internet Security 2008 15.0.0.60, and possibly other versions back to 2006, are also affected.

Scoring

CVSS4.9 (MEDIUM, v2.0)
VectorAV:L/AC:L/Au:N/C:N/I:N/A:C
EPSS1.72% — more likely to be exploited than 77% of all CVEs
WeaknessCWE-20
On CISA KEVno
Public exploityes
Published2007-04-02
Last modified2026-06-16

Affected (8)

VendorProduct
symantecantivirus
symantecclient security
symantecnorton 360
symantecnorton antispam
symantecnorton antivirus
symantecnorton internet security
symantecnorton personal firewall
symantecnorton system works

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD