CVE-2002-0440: High severity Trend Micro InterScan VirusWall vulnerability
Trend Micro InterScan VirusWall HTTP proxy 3.6 with the "Skip scanning if Content-length equals 0" option enabled allows malicious web servers to bypass content scanning via a Content-length header set to 0, which is often ignored by HTTP clients.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0440?
CVE-2002-0440 is considered a medium vulnerability due to its potential for content scanning bypass.
How do I fix CVE-2002-0440?
To mitigate CVE-2002-0440, disable the 'Skip scanning if Content-length equals 0' option in Trend Micro InterScan VirusWall.
What versions of Trend Micro InterScan VirusWall are affected by CVE-2002-0440?
CVE-2002-0440 affects versions 3.6 and 3.51 of Trend Micro InterScan VirusWall.
What is the impact of CVE-2002-0440?
CVE-2002-0440 allows attackers to bypass content scanning, potentially exposing users to malicious web content.
Are there any workarounds for CVE-2002-0440?
A workaround for CVE-2002-0440 is to implement additional security measures, such as a firewall or alternative scanning solutions.