Vulnerability Description
Norton Anti-Virus (NAV) allows remote attackers to bypass content filtering via attachments whose Content-Type and Content-Disposition headers are mixed upper and lower case, which is ignored by some mail clients.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Symantec | Norton Antivirus | All versions |
Related Weaknesses (CWE)
References
- http://marc.info/?l=bugtraq&m=101684260510079&w=2Mailing List
- http://marc.info/?l=vuln-dev&m=101681724810317&w=2Mailing List
- http://marc.info/?l=bugtraq&m=101684260510079&w=2Mailing List
- http://marc.info/?l=vuln-dev&m=101681724810317&w=2Mailing List
FAQ
What is CVE-2002-0485?
CVE-2002-0485 is a vulnerability with a CVSS score of 7.5 (HIGH). Norton Anti-Virus (NAV) allows remote attackers to bypass content filtering via attachments whose Content-Type and Content-Disposition headers are mixed upper and lower case, which is ignored by some ...
How severe is CVE-2002-0485?
CVE-2002-0485 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2002-0485?
Check the references section above for vendor advisories and patch information. Affected products include: Symantec Norton Antivirus.