CVE-2007-1495
Last modified
CVE-2007-1495 is a vulnerability of currently unknown severity. The \Device\SymEvent driver in Symantec Norton Personal Firewall 2006 9.1.1.7, and possibly other products using symevent.sys 12.0.0.20, allows local users to cause a denial of service (system crash) via invalid data, as demonstrated by calling DeviceIoControl to send the data, a reintroduction of CVE-2006-4855.. EPSS estimates a 0.40% chance of exploitation in the next 30 days.
Description
The \Device\SymEvent driver in Symantec Norton Personal Firewall 2006 9.1.1.7, and possibly other products using symevent.sys 12.0.0.20, allows local users to cause a denial of service (system crash) via invalid data, as demonstrated by calling DeviceIoControl to send the data, a reintroduction of CVE-2006-4855.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Symantec | Norton Personal Firewall | 2006_9.1.1.7 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-1495?
How severe is CVE-2007-1495?
How do I fix CVE-2007-1495?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2007
- CVE-2007-1489Unspecified vulnerability in web-app.org Web Automated Perl …
- CVE-2007-1490Unspecified maintenance web pages in Avaya S87XX, S8500, and…
- CVE-2007-1491Apache Tomcat in Avaya S87XX, S8500, and S8300 before CM 3.1…
- CVE-2007-1492winmm.dll in Microsoft Windows XP allows user-assisted remot…
- CVE-2007-1493nukesentinel.php in NukeSentinel 2.5.06 and earlier uses a p…
- CVE-2007-1494Cross-site scripting (XSS) vulnerability in NukeSentinel bef…
- CVE-2007-1496nfnetlink_log in netfilter in the Linux kernel before 2.6.20…
- CVE-2007-1497nf_conntrack in netfilter in the Linux kernel before 2.6.20.…
- CVE-2007-1498Multiple stack-based buffer overflows in the SiteManager.Sit…
- CVE-2007-1499Microsoft Internet Explorer 7.0 on Windows XP and Vista allo…
- CVE-2007-1500The Linux Security Auditing Tool (LSAT) allows local users t…
- CVE-2007-1501Stack-based buffer overflow in Avant Browser 11.0 build 26 a…
Are you affected by CVE-2007-1495?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
