Vulnerabilities > CVE-2007-4242 - Security Bypass vulnerability in Astaro Security Gateway 7.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
PARTIAL Availability impact
NONE Summary
The pop3 Proxy in Astaro Security Gateway (ASG) 7 does not perform virus scanning of attachments that exceed the maximum attachment size, and passes these attachments, which allows remote attackers to bypass this scanning via a large attachment.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Hardware | 1 |
References
- http://securityreason.com/securityalert/2981
- http://www.hescominsoon.com/archives/773
- http://www.securityfocus.com/archive/1/475642/100/0/threaded
- http://www.securityfocus.com/archive/1/477120/100/0/threaded
- http://www.securitytracker.com/id?1018543
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35827