Vulnerability Description
eTrust InoculateIT 6.0 with the "Incremental Scan" option enabled may certify that a file is free of viruses before the file has been completely downloaded, which allows remote attackers to bypass virus detection.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Broadcom | Inoculateit | 6.0 |
Related Weaknesses (CWE)
References
- http://securitytracker.com/id?1005740
- http://www.derkeiler.com/Mailing-Lists/NT-Bugtraq/2002-12/0003.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/10770
- http://securitytracker.com/id?1005740
- http://www.derkeiler.com/Mailing-Lists/NT-Bugtraq/2002-12/0003.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/10770
FAQ
What is CVE-2002-2285?
CVE-2002-2285 is a vulnerability with a CVSS score of 4.3 (MEDIUM). eTrust InoculateIT 6.0 with the "Incremental Scan" option enabled may certify that a file is free of viruses before the file has been completely downloaded, which allows remote attackers to bypass vir...
How severe is CVE-2002-2285?
CVE-2002-2285 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2002-2285?
Check the references section above for vendor advisories and patch information. Affected products include: Broadcom Inoculateit.