CVE-2001-1099

Norton AntiVirus for Microsoft Exchange 2000 2.x - Info Disclosure

Title source: llm
STIX 2.1

Description

The default configuration of Norton AntiVirus for Microsoft Exchange 2000 2.x allows remote attackers to identify the recipient's INBOX file path by sending an email with an attachment containing malicious content, which includes the path in the rejection notice.

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry, Vendor Advisory mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/212724
Third Party Advisory, VDB Entry, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/3305
Third Party Advisory, VDB Entry, Vendor Advisory mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/213762

Scores

EPSS 0.0283
EPSS Percentile 86.3%

Details

CWE
CWE-434
Status published
Products (1)
symantec/norton_antivirus 2.5
Published Sep 07, 2001
Tracked Since Feb 18, 2026