CVE-2002-1777

7.5
CVSS v2.0 Base Score
2.57%
LOW RiskEPSS (85th percentile)
NVD-CWE-Other

NOTE: this issue has been disputed by the vendor. Symantec Norton AntiVirus (NAV) 2002 allows remote attackers to bypass e-mail scanning via a filename in the Content-Type field with an excluded extension such as .nch or .dbx, but a malicious extension in the Content-Disposition field, which is used by Outlook to obtain the file name. NOTE: the vendor has disputed this issue, acknowledging that the initial scan is bypassed, but Norton AntiVirus or the Office plug-in would detect the virus before it is executed

Published: 12/31/2002
Modified: 6/16/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v2 Score

7.5

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS Score (Exploitation Probability)

2.57%LOW Exploitation Risk
85th percentile

This vulnerability has a 2.57% probability of being exploited in the next 30 days, ranking higher than 85% of all scored CVEs.

CWE Classification

NVD-CWE-Other
Advertisement