RSS   Vulnerabilities for 'Cat quickheal'   RSS

2008-12-12
 
CVE-2008-5524

CWE-20
 

 
CAT-QuickHeal 10.00 and possibly 9.50, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a .txt extension, or (3) a .jpg extension, as demonstrated by a document containing a CVE-2006-5745 exploit.

 

 >>> Vendor: Quickheal 5 Products
Cat quickheal
Antivirus plus 2009
Total security 2009
Antivirus pro
Total security


Copyright 2019, cxsecurity.com

 

Back to Top