CVE-2016-8005: Medium severity mcafee email gateway vulnerability
File extension filtering vulnerability in Intel Security McAfee Email Gateway (MEG) before 7.6.404h1128596 allows attackers to fail to identify the file name properly via scanning an email with a forged attached filename that uses a null byte within the filename extension.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-8005?
CVE-2016-8005 is considered a medium severity vulnerability due to its potential to bypass file extension filtering.
How can I fix CVE-2016-8005?
To fix CVE-2016-8005, upgrade Intel Security McAfee Email Gateway to version 7.6.404 or later.
What does CVE-2016-8005 affect?
CVE-2016-8005 affects Intel Security McAfee Email Gateway versions prior to 7.6.404.
What type of vulnerability is CVE-2016-8005?
CVE-2016-8005 is a file extension filtering vulnerability that allows attackers to bypass security checks.
How does CVE-2016-8005 exploit the system?
CVE-2016-8005 exploits the system by using a null byte in the filename extension of an email attachment, allowing forged filenames.