First published: Thu Feb 24 2000(Updated: )
ZoneAlarm sends sensitive system and network information in cleartext to the Zone Labs server if a user requests more information about an event.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zonelabs ZoneAlarm | =2.0.26 | |
=2.0.26 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2000-0220 is considered moderate as it exposes sensitive information over an unsecured channel.
To fix CVE-2000-0220, upgrade to a version of ZoneAlarm that addresses this vulnerability and ensure that sensitive data is transmitted securely.
CVE-2000-0220 exposes sensitive system and network information in cleartext.
CVE-2000-0220 specifically affects ZoneAlarm version 2.0.26.
Using ZoneAlarm version 2.0.26 is not safe due to CVE-2000-0220 as it may lead to sensitive information being compromised.