| OSVDB ID | Disclosure Date | Title |
|
73448
Description:
(Description Provided by CVE) : Frams's Fast File EXchange (F*EX, aka fex) 20100208, and possibly other versions before 20110610, allows remote attackers to bypass authentication and upload arbitrary files via a request that lacks an authentication ID.
|
2011-06-12
|
F*EX Authentication ID Validation Weakness Remote Authentication Bypass
|
|
4183
Description:
(Description Provided by CVE) : Unknown vulnerability in F-Secure Anti-Virus (FSAV) 4.52 for Linux before Hotfix 3 allows the Sober.D worm to bypass FASV.
|
2004-03-10
|
F-Secure Anti-Virus (FSAV) for Linux Sober.D Detection Bypass
|
|
36725
Description:
(Description Provided by CVE) : Multiple F-Secure anti-virus products for Microsoft Windows and Linux before 20070522 allow remote attackers to cause a denial of service (file scanning infinite loop) via certain crafted (1) ARJ archives or (2) FSG packed files.
|
2007-05-30
|
F-Secure Anti-Virus ARJ File Handling DoS
|
|
34764
Description:
(Description Provided by CVE) : Format string vulnerability in F-Secure Anti-Virus Client Security 6.02 allows local users to cause a denial of service and possibly gain privileges via format string specifiers in the Management Server name field on the Communication settings page.
|
2007-03-18
|
F-Secure Anti-Virus Client Security Management Server Communications Settings Format String
|
|
36728
Description:
(Description Provided by CVE) : Multiple F-Secure anti-virus products for Microsoft Windows and Linux before 20070619 allow remote attackers to bypass scanning via a crafted header in a (1) LHA or (2) RAR archive.
|
2007-06-19
|
F-Secure Anti-Virus Crafted LHA File Scanning Bypass
|
|
36729
Description:
(Description Provided by CVE) : Multiple F-Secure anti-virus products for Microsoft Windows and Linux before 20070619 allow remote attackers to bypass scanning via a crafted header in a (1) LHA or (2) RAR archive.
|
2007-06-19
|
F-Secure Anti-Virus Crafted RAR File Scanning Bypass
|
|
22633
Description:
F-Secure Anti Virus products contain a flaw that may allow malicious code to bypass the scanning engine. The issue is triggered when specially crafted RAR or ZIP archives are processed by the scanning engine, resulting in a loss of integrity.
|
2006-01-19
|
F-Secure Anti-Virus Crafted ZIP/RAR Scanner Bypass
|
|
19913
Description:
A remote overflow exists in F-Secure Anti-Virus for Linux. The Anti-Virus engine fails to perform proper bounds checking resulting in a heap-based buffer overflow. With a specially crafted CHM file, a remote attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2005-10-10
|
F-Secure Anti-Virus for Linux CHM File Parsing Overflow
|
|
9818
Description:
F-Secure Anti-Virus for Microsoft Exchange contains a flaw that may allow a remote denial of service. The issue is triggered due to the parsing of malformed packets on port 18,971, which causes the application to crash with an access violation error and will result in loss of availability for the server.
|
2004-09-09
|
F-Secure Anti-Virus For Microsoft Exchange Content Scanner Server Exception Handling DoS
|
|
11395
Description:
F-Secure Anti-Virus for Microsoft Exchange contains a flaw that may allow a malicious user to bypass anti-virus protection. The issue may be triggered by nesting a malicious password-protected file inside a ZIP archive. The flaw is not directly exploitable but may lead to a more serious impact.
|
2004-11-03
|
F-Secure Anti-Virus for Microsoft Exchange Nested Password Protected Archives Bypass
|
|
4962
Description:
F-Secure for MIMEsweeper contains a flaw that may allow a malicious worm to avoid detection. The issue is triggered when a Sober.D worm propagates itself in a zip file. It is possible that the flaw may allow malicious code to pass resulting in a loss of confidentiality, integrity, and/or availability.
|
2004-04-06
|
F-Secure Anti-Virus for MIMEsweeper Sober.D Detection Bypass
|
|
41377
Description:
(Description Provided by CVE) : F-Secure Anti-Virus for Windows Servers 7.0 64-bit edition allows local users to bypass virus scanning by using the system32 directory to store a crafted (1) archive or (2) packed executable. NOTE: in many environments, this does not cross privilege boundaries because any process able to write to system32 could also shut off F-Secure Anti-Virus.
|
2007-09-27
|
F-Secure Anti-Virus for Windows system32 Directory Crafted File Detection Bypass
|
|
36726
Description:
(Description Provided by CVE) : Multiple F-Secure anti-virus products for Microsoft Windows and Linux before 20070522 allow remote attackers to cause a denial of service (file scanning infinite loop) via certain crafted (1) ARJ archives or (2) FSG packed files.
|
2007-05-30
|
F-Secure Anti-Virus FSG File Handling DoS
|
|
20552
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named diag.cgi in the current working directory, and executes the SUID script diag_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway diag_suid.cgi Local Privilege Escalation
|
|
20549
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named dns.cgi in the current working directory, and executes the SUID script dns_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway dns_suid.cgi Local Privilege Escalation
|
|
20539
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named edittmpl.cgi in the current working directory, and executes the SUID script edittmpl_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway edittmpl_suid.cgi Local Privilege Escalation
|
|
20544
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named edituserdb.cgi in the current working directory, and executes the SUID script edituserdb_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway edituserdb_suid.cgi Local Privilege Escalation
|
|
20542
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named gateway.cgi in the current working directory, and executes the SUID script gateway_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway gateway_suid.cgi Local Privilege Escalation
|
|
20543
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named halt.cgi in the current working directory, and executes the SUID script halt_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway halt_suid.cgi Local Privilege Escalation
|
|
20541
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named hostname.cgi in the current working directory, and executes the SUID script hostname_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway hostname_suid.cgi Local Privilege Escalation
|
|
20545
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named htpasswd.cgi in the current working directory, and executes the SUID script htpasswd_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway htpasswd_suid.cgi Local Privilege Escalation
|
|
20513
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named ifconfig.cgi in the current working directory, and executes the SUID script ifconfig_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway ifconfig_suid.cgi Local Privilege Escalation
|
|
20548
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named iptables.cgi in the current working directory, and executes the SUID script iptables_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway iptables_suid.cgi Local Privilege Escalation
|
|
20547
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named license.cgi in the current working directory, and executes the SUID script license_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway license_suid.cgi Local Privilege Escalation
|
|
20550
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named pattern_autoup.cgi in the current working directory, and executes the SUID script pattern_autoup_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway pattern_autoup_suid.cgi Local Privilege Escalation
|
|
20546
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named pattern_up.cgi in the current working directory, and executes the SUID script pattern_up_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway pattern_up_suid.cgi Local Privilege Escalation
|
|
20538
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named proxy.cgi in the current working directory, and executes the SUID script proxy_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway proxy_suid.cgi Local Privilege Escalation
|
|
20537
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named reboot.cgi in the current working directory, and executes the SUID script reboot_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway reboot_suid.cgi Local Privilege Escalation
|
|
20551
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named spam_list.cgi in the current working directory, and executes the SUID script spam_list_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway spam_list_suid.cgi Local Privilege Escalation
|
|
20540
Description:
F-Secure Anti-Virus Internet Gatekeeper for Linux and F-Secure Anti-Virus Linux Gateway contain a flaw that may allow a malicious local user to elevate privileges to root. The issue is triggered when a user creates a malicious script named version.cgi in the current working directory, and executes the SUID script version_suid.cgi using its full path. The SUID script will execute the malicious script because it looks for it in the working directory. This flaw may lead to a loss of integrity.
|
2005-11-07
|
F-Secure Anti-Virus Internet Gatekeeper/Linux Gateway version_suid.cgi Local Privilege Escalation
|