First published: Tue Dec 31 2002(Updated: )
eTrust InoculateIT 6.0 with the "Incremental Scan" option enabled may certify that a file is free of viruses before the file has been completely downloaded, which allows remote attackers to bypass virus detection.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom InoculateIT | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-2285 is considered a moderate severity vulnerability due to its potential to allow remote attackers to bypass virus detection.
To mitigate CVE-2002-2285, it is advisable to disable the "Incremental Scan" option in eTrust InoculateIT 6.0.
CVE-2002-2285 specifically affects eTrust InoculateIT version 6.0.
Users of eTrust InoculateIT may unknowingly download infected files, as the software may certify a file is safe before the download is complete.
Remote attackers can exploit CVE-2002-2285 to bypass security measures, increasing the risk of malware infections.