Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Aladdin Knowlege Systems eSafe Gateway 3.5.126.0 does not check the entire stream of Content Vectoring Protocol (CVP) data, which allows remote attackers to bypass virus protection.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Aladdin Knowledge Systems eSafe OPSEC CVP病毒扫描可绕过漏洞
Vulnerability Description
Check Point FireWall-1是一款企业级防火墙解决方案,支持使用外部模块支持OPSEC CVP交互。 通过Check Point OPSEC CVP防火墙传递数据给eSafe时存在问题,远程攻击者可以利用这个漏洞绕过病毒过滤。 当安装了Feature Pack 3后的Checkpoint在接收到超过2M文件,CVP检查时使扫描程序不稳定,如SMTP消息超过2MB后,FW-1会进行如下操作: 1,把信息放到缓冲池里。 2,发送数据到CVP服务器。 3,当发送1MB或者将近2MB数据时会停止。
CVSS Information
N/A
Vulnerability Type
N/A