First published: Fri Dec 12 2008(Updated: )
CAT-QuickHeal 10.00 and possibly 9.50, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a .txt extension, or (3) a .jpg extension, as demonstrated by a document containing a CVE-2006-5745 exploit.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
QuickHeal CAT QuickHeal | =9.50 | |
QuickHeal CAT QuickHeal | =10.00 | |
Internet Explorer | =6 | |
Internet Explorer | =7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-5524 is classified as a medium severity vulnerability due to its ability to bypass malware detection.
To fix CVE-2008-5524, users should upgrade to the latest version of CAT-QuickHeal that includes patches for this vulnerability.
CVE-2008-5524 affects CAT-QuickHeal versions 9.50 and 10.00.
Yes, CVE-2008-5524 can be exploited when using Internet Explorer 6 or 7.
CVE-2008-5524 can facilitate attacks that bypass malware detection in HTML documents by manipulating file headers.