First published: Fri Dec 31 2004(Updated: )
Zone Labs IMsecure and IMsecure Pro before 1.5 allow remote attackers to bypass Active Link Filtering via an instant message containing a URL with hex encoded file extensions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ZoneAlarm | =1.0.2.0 | |
ZoneAlarm | =1.0.1.0 | |
ZoneAlarm | =1.0.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-1517 is considered to be of medium severity since it allows attackers to bypass security filters.
To fix CVE-2004-1517, upgrade to Zone Labs IMsecure version 1.5 or later.
CVE-2004-1517 affects Zone Labs IMsecure versions 1.0.0.0 through 1.0.2.0.
No, CVE-2004-1517 does not lead to remote code execution but allows bypassing of content filtering.
CVE-2004-1517 allows remote attackers to bypass Active Link Filtering through specially crafted instant messages.