Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Secure Computing Secure Web Gateway (aka Webwasher), when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a .txt extension, or (3) a .jpg extension, as demonstrated by a document containing a CVE-2006-5745 exploit.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Secure Computing Secure Web Gateway MZ头信息文件绕过扫描漏洞
Vulnerability Description
Secure Computing Secure Web Gateway是Macafee公司的反病毒、反间谍软件等功能集于一身网关产品。 当使用Internet Explorer 6或7时,Secure Computing Secure Web Gateway(即Webwasher)允许远程攻击者通过将一个MZ头(即"EXE info")放置在HTML的开始位置,同时将它们的文件名改为:(1)没有扩展名;2)扩展名为.txt或者(3)扩展名为.jpg来绕过该软件对恶意代码的检测。利用该漏洞的例子为一个包含了
CVSS Information
N/A
Vulnerability Type
N/A