{"api_version":"1","generated_at":"2026-07-24T18:52:18+00:00","cve":"CVE-2007-3800","urls":{"html":"https://cve.report/CVE-2007-3800","api":"https://cve.report/api/cve/CVE-2007-3800.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-3800","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-3800"},"summary":{"title":"CVE-2007-3800","description":"Unspecified vulnerability in the Real-time scanner (RTVScan) component in Symantec AntiVirus Corporate Edition 9.0 through 10.1 and Client Security 2.0 through 3.1, when the Notification Message window is enabled, allows local users to gain privileges via crafted code.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-07-16 23:30:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"6","severity":"","vector":"AV:L/AC:H/Au:S/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:L/AC:H/Au:S/C:C/I:C/A:C","baseScore":6,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://secunia.com/advisories/26054","name":"http://secunia.com/advisories/26054","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Symantec Products Real-Time Scanner Notification Window Privilege Escalation - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://osvdb.org/36116","name":"http://osvdb.org/36116","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://www.securityfocus.com/bid/24810","name":"http://www.securityfocus.com/bid/24810","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Sorry, the database is currently unavailable, please try your request again shortly","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.vupen.com/english/advisories/2007/2506","name":"http://www.vupen.com/english/advisories/2007/2506","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securityresponse.symantec.com/avcenter/security/Content/2007.07.11c.html","name":"http://securityresponse.symantec.com/avcenter/security/Content/2007.07.11c.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Symantec Security Center","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35352","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35352","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-3800","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-3800","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"3800","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"symantec","cpe5":"client_security","cpe6":"2.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"3800","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"symantec","cpe5":"client_security","cpe6":"2.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"3800","vulnerable":"1","versionEndIncluding":"3.0","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"symantec","cpe5":"client_security","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"3800","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"symantec","cpe5":"norton_antivirus","cpe6":"10.0","cpe7":"*","cpe8":"corporate","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"3800","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"symantec","cpe5":"norton_antivirus","cpe6":"9.0","cpe7":"*","cpe8":"corporate","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"3800","vulnerable":"1","versionEndIncluding":"10.1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"symantec","cpe5":"norton_antivirus","cpe6":"*","cpe7":"*","cpe8":"corporate","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T14:28:52.473Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"symantec-antivirus-rtv-privilege-escalation(35352)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35352"},{"name":"24810","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/24810"},{"name":"26054","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/26054"},{"name":"ADV-2007-2506","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/2506"},{"name":"36116","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/36116"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://securityresponse.symantec.com/avcenter/security/Content/2007.07.11c.html"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-07-12T00:00:00.000Z","descriptions":[{"lang":"en","value":"Unspecified vulnerability in the Real-time scanner (RTVScan) component in Symantec AntiVirus Corporate Edition 9.0 through 10.1 and Client Security 2.0 through 3.1, when the Notification Message window is enabled, allows local users to gain privileges via crafted code."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-28T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"symantec-antivirus-rtv-privilege-escalation(35352)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35352"},{"name":"24810","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/24810"},{"name":"26054","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/26054"},{"name":"ADV-2007-2506","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/2506"},{"name":"36116","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/36116"},{"tags":["x_refsource_CONFIRM"],"url":"http://securityresponse.symantec.com/avcenter/security/Content/2007.07.11c.html"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-3800","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Unspecified vulnerability in the Real-time scanner (RTVScan) component in Symantec AntiVirus Corporate Edition 9.0 through 10.1 and Client Security 2.0 through 3.1, when the Notification Message window is enabled, allows local users to gain privileges via crafted code."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"symantec-antivirus-rtv-privilege-escalation(35352)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35352"},{"name":"24810","refsource":"BID","url":"http://www.securityfocus.com/bid/24810"},{"name":"26054","refsource":"SECUNIA","url":"http://secunia.com/advisories/26054"},{"name":"ADV-2007-2506","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/2506"},{"name":"36116","refsource":"OSVDB","url":"http://osvdb.org/36116"},{"name":"http://securityresponse.symantec.com/avcenter/security/Content/2007.07.11c.html","refsource":"CONFIRM","url":"http://securityresponse.symantec.com/avcenter/security/Content/2007.07.11c.html"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-3800","datePublished":"2007-07-16T23:00:00.000Z","dateReserved":"2007-07-16T00:00:00.000Z","dateUpdated":"2024-08-07T14:28:52.473Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-07-16 23:30:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:S/C:C/I:C/A:C","baseScore":6,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.5,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:client_security:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0","matchCriteriaId":"0E45E229-0B88-43A6-9888-054520F87EA0"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:client_security:2.0:*:*:*:*:*:*:*","matchCriteriaId":"0DDD0E02-306D-4675-B73A-2C2F619CDDCF"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:client_security:2.1:*:*:*:*:*:*:*","matchCriteriaId":"5324D40A-76EA-4CC4-A1B1-971069A4E161"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:*:*:corporate:*:*:*:*:*","versionEndIncluding":"10.1","matchCriteriaId":"34A605C6-2412-469D-BCF3-518BEAD90579"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:9.0:*:corporate:*:*:*:*:*","matchCriteriaId":"D9E85FD6-9E89-4497-854C-60A20639CE52"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:10.0:*:corporate:*:*:*:*:*","matchCriteriaId":"CAC5389A-8B18-40C4-A3E0-E50B6AA724FC"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"3800","Ordinal":"1","Title":"CVE-2007-3800","CVE":"CVE-2007-3800","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"3800","Ordinal":"1","NoteData":"Unspecified vulnerability in the Real-time scanner (RTVScan) component in Symantec AntiVirus Corporate Edition 9.0 through 10.1 and Client Security 2.0 through 3.1, when the Notification Message window is enabled, allows local users to gain privileges via crafted code.","Type":"Description","Title":"CVE-2007-3800"},{"CveYear":"2007","CveId":"3800","Ordinal":"2","NoteData":"2007-07-16","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"3800","Ordinal":"3","NoteData":"2017-07-28","Type":"Other","Title":"Modified"}]}}}