CVE-2006-0230

Symantec Scan Engine <5.1.0.7 - Privilege Escalation

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2006-0230. PoCs published by Marc Bevand.

AI-analyzed exploit summary This exploit changes the administrator password (or password hash) of Symantec Scan Engine by leveraging an authentication bypass vulnerability. It communicates with the target via HTTP and SSL to retrieve the current password hash and set a new one.

Description

Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, uses a client-side check to verify a password, which allows remote attackers to gain administrator privileges via a modified client that sends certain XML requests.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Marc Bevand · perlremotewindows
https://www.exploit-db.com/exploits/1703

This exploit changes the administrator password (or password hash) of Symantec Scan Engine by leveraging an authentication bypass vulnerability. It communicates with the target via HTTP and SSL to retrieve the current password hash and set a new one.

Classification
Working Poc 100%
Attack Type
Auth Bypass
Complexity
Moderate
Reliability
Reliable
Target: Symantec Scan Engine
No auth needed
Prerequisites: Network access to the target's HTTP and SSL ports (default 8004 and 8005)
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (9)

Core 9
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/17637
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/19734
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/431724/100/0/threaded
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/431734/100/0/threaded
Exploit, Patch, Vendor Advisory mailing-list x_refsource_vulnwatch
http://archives.neohapsis.com/archives/vulnwatch/2006-q2/0010.html
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/118388
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/25972
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/1464

Scores

EPSS 0.1611
EPSS Percentile 96.5%

Details

Status published
Products (1)
symantec/antivirus_scan_engine 5.0.0.24
Published Apr 25, 2006
Tracked Since Feb 18, 2026