First published: Wed Jan 11 2006(Updated: )
Symantec Norton SystemWorks and SystemWorks Premier 2005 and 2006 stores temporary copies of files in the Norton Protected Recycle Bin NProtect directory, which is hidden from the FindFirst and FindNext Windows APIs and allows remote attackers to hide arbitrary files from virus scanners and other products.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec Norton System Works | =2005 | |
Symantec Norton System Works | =2006_premier | |
Symantec Norton System Works | =2006 | |
Symantec Norton System Works | =2005_premier |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0166 is a flaw in Symantec Norton SystemWorks 2005 and 2006 that allows remote attackers to hide files from virus scanners by exploiting the hidden NProtect directory.
CVE-2006-0166 affects Symantec Norton SystemWorks versions 2005, 2005 Premier, 2006, and 2006 Premier.
To mitigate CVE-2006-0166, it is recommended to update Symantec Norton SystemWorks to the latest version that addresses this vulnerability.
The risks associated with CVE-2006-0166 include increased exposure to malware and security breaches due to hidden files that can bypass virus detection.
Yes, Symantec has released patches that address the vulnerability CVE-2006-0166, and users should check for the latest updates.