Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-1999-1380

Overview

Vulnerability Score 5.1 5.1
CVE Id CVE-1999-1380
Last Modified 05 Sep 2008 04:19:23
Published 04 May 1997 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity HIGH
Authentication NONE

CVE-1999-1380

Summary

Symantec Norton Utilities 2.0 for Windows 95 marks the TUNEOCX.OCX ActiveX control as safe for scripting, which allows remote attackers to execute arbitrary commands via the run option through malicious web pages that are accessed by browsers such as Internet Explorer 3.0.

Vulnerable Systems

Application

  • Symantec Norton Utilities 2.0


References

MISC - http://mlarchive.ima.com/win95/1997/May/0342.html

MISC - http://www.net-security.sk/bugs/NT/nu20.html

MISC - http://news.zdnet.co.uk/story/0,,s2065518,00.html

XF - nu-tuneocx-activex-control(7188)


Last Updated: 27 May 2016 10:35:24