PT-2003-2394 · Aladdin Knowledge Systems · Esafe Gateway

Published

2003-12-31

·

Updated

2017-07-29

·

CVE-2003-1449

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Aladdin Knowledge Systems eSafe Gateway version 3.5.126.0
Description The issue allows remote attackers to bypass virus protection due to incomplete checking of the Content Vectoring Protocol (CVP) data stream.
Recommendations For version 3.5.126.0, consider updating to a newer version that includes a fix for this issue, as the current version does not properly check CVP data, allowing attackers to bypass virus protection. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2003-1449

Affected Products

Esafe Gateway