CVE-2006-6405: Medium severity softwin bitdefender mail protection vulnerability
BitDefender Mail Protection for SMB 2.0 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6405?
CVE-2006-6405 is considered a high severity vulnerability due to its ability to allow remote attackers to bypass virus detection.
How does CVE-2006-6405 allow virus detection bypass?
CVE-2006-6405 allows virus detection bypass by exploiting invalid characters in base64 encoded content in a multipart/mixed MIME file.
Which version of BitDefender Mail Protection is affected by CVE-2006-6405?
BitDefender Mail Protection version 2.0 for SMB is affected by CVE-2006-6405.
What types of attacks can CVE-2006-6405 facilitate?
CVE-2006-6405 can facilitate attacks that involve sending malicious files that are not detected by the antivirus software.
What steps should be taken to mitigate CVE-2006-6405?
To mitigate CVE-2006-6405, it's recommended to update to a patched version of BitDefender Mail Protection or implement additional security measures.