3Com SuperStack 3 Firewall Content Filter Bypassing Vulnerability
BID:7021
Info
3Com SuperStack 3 Firewall Content Filter Bypassing Vulnerability
| Bugtraq ID: | 7021 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 05 2003 12:00AM |
| Updated: | Mar 05 2003 12:00AM |
| Credit: | The discovery of this vulnerability has been credited to <[email protected]>. |
| Vulnerable: |
3Com 3Com SuperStack 3 Firewall |
| Not Vulnerable: | |
Discussion
3Com SuperStack 3 Firewall Content Filter Bypassing Vulnerability
A vulnerability has been reported in the 3Com Superstack 3 Firewall. HTTP content filters put in place by the device fail to assemble fragmented data, potentially allowing an attacker to access unauthorized web sites.
An attacker could exploit this vulnerability by connecting a web server using a protocol in which data is fragmented when transferred.
Although unconfirmed, it is possible that this issue also affects other HTTP content filters.
A vulnerability has been reported in the 3Com Superstack 3 Firewall. HTTP content filters put in place by the device fail to assemble fragmented data, potentially allowing an attacker to access unauthorized web sites.
An attacker could exploit this vulnerability by connecting a web server using a protocol in which data is fragmented when transferred.
Although unconfirmed, it is possible that this issue also affects other HTTP content filters.
References
3Com SuperStack 3 Firewall Content Filter Bypassing Vulnerability
References:
References: