CVE-2001-1373
Summary
| CVE | CVE-2001-1373 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2001-07-18 04:00:00 UTC |
| Updated | 2017-10-10 01:30:00 UTC |
| Description | MailSafe in Zone Labs ZoneAlarm 2.6 and earlier and ZoneAlarm Pro 2.6 and 2.4 does not block prohibited file types with long file names, which allows remote attackers to send potentially dangerous attachments. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Zonelabs | Zonealarm | 2.1 | All | All | All |
| Application | Zonelabs | Zonealarm | 2.2 | All | All | All |
| Application | Zonelabs | Zonealarm | 2.3 | All | All | All |
| Application | Zonelabs | Zonealarm | 2.4 | All | All | All |
| Application | Zonelabs | Zonealarm | 2.4 | All | pro | All |
| Application | Zonelabs | Zonealarm | 2.5 | All | All | All |
| Application | Zonelabs | Zonealarm | 2.6 | All | All | All |
| Application | Zonelabs | Zonealarm | 2.6 | All | pro | All |
| Application | Zonelabs | Zonealarm | 2.1 | All | All | All |
| Application | Zonelabs | Zonealarm | 2.2 | All | All | All |
| Application | Zonelabs | Zonealarm | 2.3 | All | All | All |
| Application | Zonelabs | Zonealarm | 2.4 | All | All | All |
| Application | Zonelabs | Zonealarm | 2.4 | All | pro | All |
| Application | Zonelabs | Zonealarm | 2.5 | All | All | All |
| Application | Zonelabs | Zonealarm | 2.6 | All | All | All |
| Application | Zonelabs | Zonealarm | 2.6 | All | pro | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Zone Labs ZoneAlarm MailSafe Bypass Vulnerability | BID | www.securityfocus.com | Vendor Advisory |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| Zone Labs: Products & Solutions | CONFIRM | www.zonelabs.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.