Lucene search

K
cveMitreCVE-2007-3300
HistoryJun 20, 2007 - 10:30 p.m.

CVE-2007-3300

2007-06-2022:30:00
mitre
web.nvd.nist.gov
27
cve-2007-3300
f-secure
antivirus
bypass
scanning
lha
rar
archive
security vulnerability

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

Low

EPSS

0.046

Percentile

92.7%

Multiple F-Secure anti-virus products for Microsoft Windows and Linux before 20070619 allow remote attackers to bypass scanning via a crafted header in a (1) LHA or (2) RAR archive.

Affected configurations

Nvd
Node
f-securef-secure_anti-virusMatch2.16linux_gateways
OR
f-securef-secure_anti-virusMatch4.51linux_gateways
OR
f-securef-secure_anti-virusMatch4.51linux_servers
OR
f-securef-secure_anti-virusMatch4.52linux_gateways
OR
f-securef-secure_anti-virusMatch4.52linux_servers
OR
f-securef-secure_anti-virusMatch4.61linux_gateways
OR
f-securef-secure_anti-virusMatch4.61linux_servers
OR
f-securef-secure_anti-virusMatch4.64linux_gateways
OR
f-securef-secure_anti-virusMatch4.64linux_servers
OR
f-securef-secure_anti-virusMatch4.65linux_gateways
OR
f-securef-secure_anti-virusMatch4.65linux_servers
OR
f-securef-secure_anti-virusMatch5.0.2
OR
f-securef-secure_anti-virusMatch5.2.1
OR
f-securef-secure_anti-virusMatch5.3.0
OR
f-securef-secure_anti-virusMatch5.5client_security
OR
f-securef-secure_anti-virusMatch5.40workstations
OR
f-securef-secure_anti-virusMatch5.41windows_servers
OR
f-securef-secure_anti-virusMatch5.41workstations
OR
f-securef-secure_anti-virusMatch5.42windows_servers
OR
f-securef-secure_anti-virusMatch5.42workstations
OR
f-securef-secure_anti-virusMatch5.43workstations
OR
f-securef-secure_anti-virusMatch5.44workstations
OR
f-securef-secure_anti-virusMatch5.52citrix_servers
OR
f-securef-secure_anti-virusMatch5.52client_security
OR
f-securef-secure_anti-virusMatch5.54client_security
OR
f-securef-secure_anti-virusMatch5.55client_security
OR
f-securef-secure_anti-virusMatch5.56
OR
f-securef-secure_anti-virusMatch5.61mimesweeper
OR
f-securef-secure_anti-virusMatch6.01client_security
OR
f-securef-secure_anti-virusMatch6.01ms_exchange
OR
f-securef-secure_anti-virusMatch6.02client_security
OR
f-securef-secure_anti-virusMatch6.2ms_exchange
OR
f-securef-secure_anti-virusMatch6.03client_security
OR
f-securef-secure_anti-virusMatch6.21ms_exchange
OR
f-securef-secure_anti-virusMatch6.30ms_exchange
OR
f-securef-secure_anti-virusMatch6.30_sr1ms_exchange
OR
f-securef-secure_anti-virusMatch6.31ms_exchange
OR
f-securef-secure_anti-virusMatch6.40ms_exchange
OR
f-securef-secure_anti-virusMatch6.60ms_exchange
OR
f-securef-secure_anti-virusMatch6.61ms_exchange
OR
f-securef-secure_anti-virusMatch7.00client_security
OR
f-securef-secure_anti-virusMatch7.00ms_exchange
OR
f-securef-secure_anti-virusMatch7.00windows_servers
OR
f-securef-secure_anti-virusMatch7.00workstations
OR
f-securef-secure_anti-virusMatch2005
OR
f-securef-secure_anti-virusMatch2006
OR
f-securef-secure_anti-virusMatch2007
OR
f-securef-secure_anti-virus_linux_client_securityRange5.52
OR
f-securef-secure_anti-virus_linux_server_securityRange5.52
OR
f-securef-secure_internet_securityMatch2005
OR
f-securef-secure_internet_securityMatch2006
OR
f-securef-secure_internet_securityMatch2007
OR
f-secureinternet_gatekeeperRange6.61
OR
f-secureinternet_gatekeeperMatch2.06linux
OR
f-secureinternet_gatekeeperMatch2.14linux
OR
f-secureinternet_gatekeeperMatch2.15.484linux
OR
f-secureinternet_gatekeeperMatch2.16linux
OR
f-securesolutions_based_on_f-secure_personal_expressMatch6.20
VendorProductVersionCPE
f-securef-secure_anti-virus2.16cpe:2.3:a:f-secure:f-secure_anti-virus:2.16:*:linux_gateways:*:*:*:*:*
f-securef-secure_anti-virus4.51cpe:2.3:a:f-secure:f-secure_anti-virus:4.51:*:linux_gateways:*:*:*:*:*
f-securef-secure_anti-virus4.51cpe:2.3:a:f-secure:f-secure_anti-virus:4.51:*:linux_servers:*:*:*:*:*
f-securef-secure_anti-virus4.52cpe:2.3:a:f-secure:f-secure_anti-virus:4.52:*:linux_gateways:*:*:*:*:*
f-securef-secure_anti-virus4.52cpe:2.3:a:f-secure:f-secure_anti-virus:4.52:*:linux_servers:*:*:*:*:*
f-securef-secure_anti-virus4.61cpe:2.3:a:f-secure:f-secure_anti-virus:4.61:*:linux_gateways:*:*:*:*:*
f-securef-secure_anti-virus4.61cpe:2.3:a:f-secure:f-secure_anti-virus:4.61:*:linux_servers:*:*:*:*:*
f-securef-secure_anti-virus4.64cpe:2.3:a:f-secure:f-secure_anti-virus:4.64:*:linux_gateways:*:*:*:*:*
f-securef-secure_anti-virus4.64cpe:2.3:a:f-secure:f-secure_anti-virus:4.64:*:linux_servers:*:*:*:*:*
f-securef-secure_anti-virus4.65cpe:2.3:a:f-secure:f-secure_anti-virus:4.65:*:linux_gateways:*:*:*:*:*
Rows per page:
1-10 of 581

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

Low

EPSS

0.046

Percentile

92.7%

Related for CVE-2007-3300