CVE-2004-0364: High severity Symantec Norton Internet Security vulnerability
Published Mar 23, 2004
·Updated
The WrapNISUM ActiveX component (WrapUM.dll) in Norton Internet Security 2004 is marked safe for scripting, which allows remote attackers to execute arbitrary programs via the LaunchURL method.
Affected Software
2 affected components
Symantec Norton Internet Security=2004
Symantec Norton Internet Security=2004
Remediation
Patch Available
Event History
Mar 23, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0364?
CVE-2004-0364 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2004-0364?
To fix CVE-2004-0364, users should update Norton Internet Security 2004 to the latest version or apply any available patches.
3
What type of attack does CVE-2004-0364 enable?
CVE-2004-0364 allows remote attackers to execute arbitrary programs on a vulnerable system.
4
Which software is affected by CVE-2004-0364?
CVE-2004-0364 specifically affects Symantec Norton Internet Security 2004.
5
What is the primary method of exploitation for CVE-2004-0364?
The primary method of exploitation for CVE-2004-0364 is through the LaunchURL method within the WrapNISUM ActiveX component.