← All CVEs

CVE-2006-6490

high · 10

Multiple buffer overflows in the SupportSoft (1) SmartIssue (tgctlsi.dll) and (2) ScriptRunner (tgctlsr.dll) ActiveX controls, as used by Symantec Automated Support Assistant and Norton AntiVirus, Internet Security, and System Works 2006, allows remote attackers to execute arbitrary code via a crafted HTML message.

10
CVSS
10.3%
EPSS (exploit prob.)
95th
EPSS percentile
2007-02-22
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
supportsoftscriptrunnerall versions
supportsoftsmartissueall versions
symantecautomated_support_assistantall versions
symantecnorton_antivirus2006
symantecnorton_internet_security2006
symantecnorton_system_works2006

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-6490