Computer Security
[EN] securityvulns.ru
no-pyccku



Content filtering bypass for SMTP/HTTP in multiple products
updated since 09.03.2002
Published:17.01.2005
Source:3APA3A
SecurityVulns ID:1845
Type:remote
Level:6/10
Description:By using unusuall representation for filename, boundaries, etc it's possible to bypass content filtering software.
Affected:RIPMIME : ripMIME 1.2
 SYMANTEC : Norton Anti-Virus 2002
 KASPERSKY : Kaspersky Antivirus 4.0
 ZONELABS : ZoneAlarm 3.0
 MIMETOOLS : MIME::Tools
 INTERSCAN : VirusWall 3.6
Original documentdocumentSECUNIA, [SA13869] SafeHTML Hexadecimal HTML Entities Security Bypass (17.01.2005)
 documentadvisories, [Full-Disclosure] Corsaire Security Advisory - Multiple vendor MIME Content-Transfer-Encoding mechanism issue (13.09.2004)
 documentadvisories, [Full-Disclosure] Corsaire Security Advisory - Multiple vendor MIME field whitespace issue (13.09.2004)
 documentadvisories, [Full-Disclosure] Corsaire Security Advisory - Multiple vendor MIME separator issue (13.09.2004)
 documentadvisories, [Full-Disclosure] Corsaire Security Advisory - Multiple vendor MIME RFC2231 encoding issue (13.09.2004)
 documentadvisories, [Full-Disclosure] Corsaire Security Advisory - Multiple vendor MIME RFC2047 encoding issue (13.09.2004)
 documentadvisories, [Full-Disclosure] Corsaire Security Advisory - Multiple vendor MIME field multiple occurrence issue (13.09.2004)
 documentVincent Royer, Bypassing TrendMicro InterScan VirusWall (12.09.2002)
 documentAviram Jenik, Bypassing SMTP Content Protection with a Flick of a Button (12.09.2002)
 documentDavid F. Skoll, MIME::Tools Perl module and virus scanners (04.06.2002)
 documenteDvice Security Services, Various Vulnerabilities in ZoneAlarm MailSafe (03.04.2002)
 document3APA3A, One more way to bypass NAV (25.03.2002)
 documentBoris Wesslowski, VirusWall HTTP proxy content scanning circumvention (12.03.2002)
 documenteDvice Security Services, Various Vulnerabilities in Norton Anti-Virus 2002 (09.03.2002)
 documentPaul L Daniels, Outlook \r expliots - ripMIME fix. (09.03.2002)
 documentSYMANTEC, Re: Edvice Security Services <support@edvicesecurity.com, 000701c1c5fb$c168f970$5a01010a@mic2000 (09.03.2002)
 document3APA3A, SECURITY.NNOV: Bypassing content filtering software (09.03.2002)
Files:Bypassing content filtering software
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server