Symantec Norton Products NAVCOMUI.DLL ActiveX Control Remote Code Execution Vulnerability

Multiple Symantec Norton products are prone to a remote code-execution vulnerability. This issue occurs in ActiveX controls that are shared across multiple products.

Invoking the object from a malicious website or HTML email may trigger this condition. Successful exploits allow remote attackers to execute code and to compromise affected computers. Failed exploit attempts likely result in computer crashes.

The following products are vulnerable to this issue:

Norton Antivirus 2006
Norton Internet Security 2006
Norton Internet Security, Anti Spyware Edition 2005
Norton System Works 2006


 

Privacy Statement
Copyright 2010, SecurityFocus