CVE-2006-2630
Symantec Client Security 3.1 and Norton Antivirus 10.1 - Stack-Based Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2006-2630.
PoCs published by Metasploit, MC, including Metasploit module exploits/windows/antivirus/symantec_rtvscan.
AI-analyzed exploit summary This is a Metasploit module exploiting a stack buffer overflow in Symantec Client Security 3.0.x via a crafted packet sent to port 2967. It includes a payload delivery mechanism and a return address override to achieve remote code execution.
Description
Stack-based buffer overflow in Symantec Antivirus 10.1 and Client Security 3.1 allows remote attackers to execute arbitrary code via unknown attack vectors.
Exploits (2)
This is a Metasploit module exploiting a stack buffer overflow in Symantec Client Security 3.0.x via a crafted packet sent to port 2967. It includes a payload delivery mechanism and a return address override to achieve remote code execution.
This Metasploit module exploits a stack buffer overflow in Symantec Client Security 3.0.x via a crafted TCP payload sent to port 2967. It leverages a hardcoded return address (0x69985624) in Dec2TAR.dll to achieve remote code execution.