PT-2008-6592 · Microsoft+1 · Internet Explorer+1
Publicado
2008-12-12
·
Atualizado
2018-10-11
·
CVE-2008-5531
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Fortinet Antivirus version 3.113.0.0
Description
The issue allows remote attackers to bypass malware detection in HTML documents by modifying the file to include an MZ header at the beginning and altering the filename to have no extension, a .txt extension, or a .jpg extension.
Recommendations
For Fortinet Antivirus version 3.113.0.0, consider updating Internet Explorer to a version newer than 7 to mitigate the risk, or avoid using the mentioned filename modifications when scanning documents for malware.
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Fortinet Antivirus
Internet Explorer