First published: Wed Jun 30 2004(Updated: )
The Mobile Code filter in ZoneAlarm Pro 5.0.590.015 does not filter mobile code within an SSL encrypted session, which could allow remote attackers to bypass the mobile code filtering. NOTE: it has been disputed by the vendor that this behavior is required by the SSL specification.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zonelabs ZoneAlarm | =5.0.590.015 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.