Vulnerability Name: | CVE-2001-1373 (CCN-6877) | ||||||||
Assigned: | 2001-07-18 | ||||||||
Published: | 2001-07-18 | ||||||||
Updated: | 2017-10-10 | ||||||||
Summary: | MailSafe in Zone Labs ZoneAlarm 2.6 and earlier and ZoneAlarm Pro 2.6 and 2.4 does not block prohibited file types with long file names, which allows remote attackers to send potentially dangerous attachments. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Bypass Security | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Wed Jul 18 2001 - 10:53:37 CDT ZoneAlarm Pro's MailSafe Source: MITRE Type: CNA CVE-2001-1373 Source: CCN Type: OSVDB ID: 4687 ZoneAlarm MailSafe Long Filename Bypass Source: BUGTRAQ Type: UNKNOWN 20010718 ZoneAlarm Pro Source: BID Type: Vendor Advisory 3055 Source: CCN Type: BID-3055 Zone Labs ZoneAlarm MailSafe Bypass Vulnerability Source: CONFIRM Type: UNKNOWN http://www.zonelabs.com/products/zap/rel_history.html#2.6.362 Source: XF Type: UNKNOWN zonealarm-bypass-mailsafe(6877) Source: XF Type: UNKNOWN zonealarm-bypass-mailsafe(6877) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |