Vulnerabilities > F Secure

DATE CVE VULNERABILITY TITLE RISK
2004-12-31 CVE-2004-2442 Unspecified vulnerability in F-Secure products
Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows Servers 5.50 and earlier, MIMEsweeper 5.50 and earlier, Anti-Virus for Linux Servers and Gateways 4.61 and earlier, and other products, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on the target system.
network
low complexity
f-secure
5.0
2004-12-31 CVE-2004-2405 Denial-Of-Service vulnerability in F-Secure Anti-Virus
Buffer overflow in multiple F-Secure Anti-Virus products, including F-Secure Anti-Virus 5.42 and earlier, allows remote attackers to bypass scanning or cause a denial of service (crash or module restart), depending on the product, via a malformed LHA archive.
network
low complexity
f-secure
6.4
2004-12-31 CVE-2004-2276 F-Secure Anti-Virus 5.41 and 5.42 on Windows, Client Security 5.50 and 5.52, 4.60 for Samba Servers, and 4.52 and earlier for Linux does not properly detect certain viruses in a PKZip archive, which allows viruses such as Sober.D and Sober.G to bypass initial detection.
local
low complexity
f-secure
2.1
2004-12-31 CVE-2004-2220 Unspecified vulnerability in F-Secure Anti-Virus 6.30/6.30Sr1/6.31
F-Secure Anti-Virus for Microsoft Exchange 6.30 and 6.31 does not properly detect certain password-protected files in a ZIP file, which allows remote attackers to bypass anti-virus protection.
network
low complexity
f-secure
5.0
2004-12-31 CVE-2004-1762 Remote Security vulnerability in F-Secure Anti-Virus
Unknown vulnerability in F-Secure Anti-Virus (FSAV) 4.52 for Linux before Hotfix 3 allows the Sober.D worm to bypass FASV.
network
low complexity
f-secure
7.5
2004-10-20 CVE-2004-0162 Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME encapsulation that uses RFC822 comment fields, which may be interpreted as other fields by mail clients.
network
low complexity
clearswift f-secure paul-l-daniels
7.5
2004-10-20 CVE-2004-0161 Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use RFC2231 encoding, which may be interpreted differently by mail clients.
network
low complexity
clearswift f-secure paul-l-daniels
7.5
2004-10-20 CVE-2004-0053 Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use fields that use RFC2047 encoding, which may be interpreted differently by mail clients.
network
low complexity
clearswift f-secure paul-l-daniels
7.5
2004-10-20 CVE-2004-0052 Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use non-standard separator characters, or use standard separators incorrectly, within MIME headers, fields, parameters, or values, which may be interpreted differently by mail clients.
network
low complexity
clearswift f-secure paul-l-daniels
7.5
2004-10-20 CVE-2004-0051 Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use non-standard but frequently supported Content-Transfer-Encoding values such as (1) uuencode, (2) mac-binhex40, and (3) yenc, which may be interpreted differently by mail clients.
network
low complexity
clearswift f-secure paul-l-daniels
7.5