← Vulnerability feed

Vulnerability record · CVE-2009-3028 · published 7 March 2011

CVE-2009-3028: Symantec altiris deployment solution vulnerability

Symantec · Altiris Deployment Solution

The Altiris eXpress NS SC Download ActiveX control in AeXNSPkgDLLib.dll, as used in Symantec Altiris Deployment Solution 6.9.x, Notification Server 6.0.x, and Symantec Management Platform 7.0.x exposes an unsafe method, which allows remote attackers to force the download of arbitrary files and possibly execute arbitrary code via the DownloadAndInstall method.

6.8 CVSS 2.0 Medium EPSS 43% · top 1.3%
6.8CVSS 2.0 base score
43%EPSS exploitation probability, 30 days
NoNot in CISA KEV
3Affected product versions listed by NVD
10References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

The Altiris eXpress NS SC Download ActiveX control in AeXNSPkgDLLib.dll, as used in Symantec Altiris Deployment Solution 6.9.x, Notification Server 6.0.x, and Symantec Management Platform 7.0.x exposes an unsafe method, which allows remote attackers to force the download of arbitrary files and possibly execute arbitrary code via the DownloadAndInstall method.

AV:N/AC:M/Au:N/C:P/I:P/A:P

Affected products

3 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2009-3028 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2009-3179Symantec altiris deployment solution vulnerabilityMultiple unspecified vulnerabilities in Symantec Altiris Deployment Solution 6.9 might allow remote attackers to execute arbitrary code via unknown c…EPSS 5.3%9.3CVE-2009-3033Symantec altiris deployment solution memory buffer overflow vulnerabilityBuffer overflow in the RunCmd method in the Altiris eXpress NS Console Utilities ActiveX control in AeXNSConsoleUtilities.dll in the web console in S…EPSS 40%9.3CVE-2009-3031Symantec Altiris ConsoleUtilities ActiveX stack buffer overflowThe BrowseAndSaveFile method in the Altiris eXpress NS ConsoleUtilities ActiveX control (AeXNSConsoleUtilities.dll) contains a stack-based buffer ove…EPSS 45%analysed9.3CVE-2009-3109Symantec altiris deployment solution vulnerabilityUnspecified vulnerability in the AClient agent in Symantec Altiris Deployment Solution 6.9.x before 6.9 SP3 Build 430, when key-based authentication …EPSS 3.8%9.3CVE-2008-4564Autonomy keyview export sdk memory buffer overflow vulnerabilityStack-based buffer overflow in wp6sr.dll in the Autonomy KeyView SDK 10.4 and earlier, as used in IBM Lotus Notes, Symantec Mail Security (SMS) produ…EPSS 6.8%7.8CVE-2009-3178Symantec altiris deployment solution vulnerabilityUnspecified vulnerability in mm.exe in Symantec Altiris Deployment Solution 6.9 allows remote attackers to cause a denial of service via unknown atta…EPSS 2.6%7.8CVE-2008-6827Symantec altiris deployment solution missing authentication for critical function vulnerabilityThe ListView control in the Client GUI (AClient.exe) in Symantec Altiris Deployment Solution 6.x before 6.9.355 SP1 allows local users to gain SYSTEM…EPSS 1.1%7.8CVE-2008-6828Symantec altiris deployment solution cleartext storage of sensitive data vulnerabilitySymantec Altiris Deployment Solution 6.x before 6.9.355 SP1 stores the Application Identity Account password in memory in cleartext, which allows loc…EPSS 0.25%

Source: NIST National Vulnerability Database (record CVE-2009-3028), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.