CVE-2007-0447
Heap-based buffer overflow in the Decomposer component in multiple Symantec products allows remote attackers to execute arbitrary code via multiple crafted CAB archives.
Published:Oct 5, 2007
Last Modified:Apr 23, 2026
EPS:Oct 5, 2007
EPSS Score:0.10844
CVSS Score:9.3
Affected Products
Vendor
Product
Action
Vendor
Symantec
Product
Antivirus Scan Engine
Symantec
Antivirus Scan Engine
Vendor
Symantec
Product
Brightmail Antispam
Symantec
Brightmail Antispam
Vendor
Symantec
Product
Client Security
Symantec
Client Security
Vendor
Symantec
Product
Gateway Security 5000 Series
Symantec
Gateway Security 5000 Series
Vendor
Symantec
Product
Gateway Security 5400
Symantec
Gateway Security 5400
Vendor
Symantec
Product
Mail Security
Symantec
Mail Security
Vendor
Symantec
Product
Mail Security 8820 Appliance
Symantec
Mail Security 8820 Appliance
Vendor
Symantec
Product
Norton Antivirus
Symantec
Norton Antivirus
Vendor
Symantec
Product
Norton Internet Security
Symantec
Norton Internet Security
Vendor
Symantec
Product
Norton Personal Firewall
Symantec
Norton Personal Firewall
Vendor
Symantec
Product
Norton System Works
Symantec
Norton System Works
Vendor
Symantec
Product
Symantec Antivirus Filtering \+for Domino
Symantec
Symantec Antivirus Filtering \+for Domino
Vendor
Symantec
Product
Web Security
Symantec
Web Security
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
