CVE-2009-1517: Medium severity ghost vulnerability
Multiple insecure method vulnerabilities in the Symantec.EasySetup.1 ActiveX control in EasySetupInt.dll 14.0.4.30167 in the EasySetup wizard in Symantec Norton Ghost 14.0 allow remote attackers to cause a denial of service (browser crash) and possibly execute arbitrary code via unspecified input to the (1) GetBackupLocationPath, (2) CallUninstall, (3) SetupDeleteVolume, (4) CanUseEasySetup, (5) CallAddInitialProtection, and (6) CallTour methods.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1517?
CVE-2009-1517 has a medium severity rating due to potential denial of service and arbitrary code execution risks.
How do I fix CVE-2009-1517?
To fix CVE-2009-1517, update to the latest version of Symantec Norton Ghost that addresses this vulnerability.
What systems are affected by CVE-2009-1517?
CVE-2009-1517 affects Symantec Norton Ghost version 14.0.
What type of vulnerability is CVE-2009-1517?
CVE-2009-1517 is categorized as a multiple insecure method vulnerability in an ActiveX control.
Can CVE-2009-1517 lead to remote code execution?
Yes, CVE-2009-1517 can lead to remote code execution through exploitation of the vulnerabilities.