CVE-2009-3031

Symantec Altiris Deployment Solution - Memory Corruption

Title source: rule

Description

Stack-based buffer overflow in the BrowseAndSaveFile method in the Altiris eXpress NS ConsoleUtilities ActiveX control 6.0.0.1846 in AeXNSConsoleUtilities.dll in Symantec Altiris Notification Server (NS) 6.0 before R12, Deployment Server 6.8 and 6.9 in Symantec Altiris Deployment Solution 6.9 SP3, and Symantec Management Platform (SMP) 7.0 before SP3 allows remote attackers to execute arbitrary code via a long string in the second argument.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16613
exploitdb WORKING POC VERIFIED
by Nikolas Sotiriu · rubyremotewindows
https://www.exploit-db.com/exploits/9853
metasploit WORKING POC NORMAL
by Nikolas Sotiriu (lofi) · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/browser/symantec_consoleutilities_browseandsavefile.rb

Scores

EPSS 0.7664
EPSS Percentile 99.0%

Details

CWE
CWE-119
Status published
Products (4)
symantec/altiris_deployment_solution 6.9 (4 CPE variants)
symantec/altiris_management_platform 7.0 (2 CPE variants)
symantec/altiris_notification_server 6.0 (5 CPE variants)
symantec/altiris_notification_server 7.0 (2 CPE variants)
Published Nov 03, 2009
Tracked Since Feb 18, 2026