CVE-2011-0688
Summary
| CVE | CVE-2011-0688 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2011-01-31 21:00:25 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | Intel Alert Management System (aka AMS or AMS2), as used in Symantec Antivirus Corporate Edition (SAVCE) 10.x before 10.1 MR10, Symantec System Center (SSC) 10.x, and Symantec Quarantine Server 3.5 and 3.6, allows remote attackers to execute arbitrary commands via crafted messages over TCP, as discovered by Junaid Bohio, a different vulnerability than CVE-2010-0110 and CVE-2010-0111. NOTE: some of these details are obtained from third party information. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
MediumAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:N/AC:M/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Symantec | Antivirus | 10.0 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0 | mr1 | corporate | All |
| Application | Symantec | Antivirus | 10.0 | mr2 | corporate | All |
| Application | Symantec | Antivirus | 10.0.1 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0.1.1 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0.1.2 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0.2 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0.2.1 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0.2.2 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0.3 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0.4 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0.5 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0.6 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0.7 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0.8 | All | corporate | All |
| Application | Symantec | Antivirus | 10.0.9 | All | corporate | All |
| Application | Symantec | Antivirus | 10.1 | All | corporate | All |
| Application | Symantec | Antivirus | 10.1 | mp1 | corporate | All |
| Application | Symantec | Antivirus | 10.1 | mr4 | corporate | All |
| Application | Symantec | Antivirus | 10.1 | mr5 | corporate | All |
| Application | Symantec | Antivirus | 10.1 | mr6 | corporate | All |
| Application | Symantec | Antivirus | 10.1 | mr7 | corporate | All |
| Application | Symantec | Antivirus | 10.1.0.1 | All | corporate | All |
| Application | Symantec | Antivirus | 10.1.4 | All | corporate | All |
| Application | Symantec | Antivirus | 10.1.4.1 | All | corporate | All |
| Application | Symantec | Antivirus | 10.1.5 | All | corporate | All |
| Application | Symantec | Antivirus | 10.1.5.1 | All | corporate | All |
| Application | Symantec | Antivirus | 10.1.6 | All | corporate | All |
| Application | Symantec | Antivirus | 10.1.6.1 | All | corporate | All |
| Application | Symantec | Antivirus | 10.1.7 | All | corporate | All |
| Application | Symantec | Antivirus | 10.1.8 | All | corporate | All |
| Application | Symantec | Antivirus | 10.1.9 | All | corporate | All |
| Application | Symantec | Antivirus | 10.2 | All | corporate | All |
| Application | Symantec | Antivirus | 10.2 | mr2 | corporate | All |
| Application | Symantec | Antivirus | 10.2 | mr3 | corporate | All |
| Application | Symantec | Antivirus Central Quarantine Server | 3.5 | All | All | All |
| Application | Symantec | Antivirus Central Quarantine Server | 3.6 | All | All | All |
| Application | Symantec | System Center | 10.0 | All | All | All |
| Application | Symantec | System Center | 10.1 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Symantec Products Intel Alert Management System Multiple Vulnerabilities - Advisories - Community | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Vendor Advisory |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | Vendor Advisory |
| Security Advisories Relating to Symantec Products - Symantec Intel Alert Management System Multiple Code Execution Issues - 2011-01-26T09:22:13 PST | Symantec | af854a3a-2127-422b-91ae-364da2661108 | www.symantec.com | |
| www.securityfocus.com/bid/45936 | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| Symantec Antivirus Corporate Edition Intel AMS Service Lets Remote Users Execute Arbitrary Code - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | securitytracker.com | |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.