Vulnerabilities > CVE-2009-0042

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
broadcom
ca
critical
nessus

Summary

Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008; Internet Security Suite 2007 v3 and 2008; and other CA products allow remote attackers to bypass virus detection via a malformed archive file.

Nessus

NASL familyWindows
NASL idCA_AV_ARCHIVE_FILE_EVASION.NASL
descriptionThe Computer Associates (CA) antivirus scan engine installed on the remote host is affected by multiple scan evasion vulnerabilities due to a failure to handle certain malformed archive files. An attacker can exploit this, via crafted archive files, to evade detection by the scan engine.
last seen2020-06-01
modified2020-06-02
plugin id35473
published2009-01-28
reporterThis script is Copyright (C) 2009-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/35473
titleCA Antivirus Engine Multiple Scan Evasion