This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Sophos First view 2007-09-10
Product Sophos Anti-Virus Last view 2007-09-10
Version 6.5.8 Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:sophos:sophos_anti-virus

Activity : Overall

Related : CVE

  Date Alert Description
5 2007-09-10 CVE-2007-4787

The virus detection engine in Sophos Anti-Virus before 2.49.0 does not properly process malformed (1) CAB, (2) LZH, and (3) RAR files with modified headers, which might allow remote attackers to bypass malware detection.

CWE : Common Weakness Enumeration

%idName
100% (1) CWE-20 Improper Input Validation

Open Source Vulnerability Database (OSVDB)

id Description
37988 Sophos Anti-Virus Multiple Archive Scan Detection Bypass

Nessus® Vulnerability Scanner

id Description
2007-09-07 Name: The remote Windows host has an application that is affected by multiple vulne...
File: sophos_2_49_0.nasl - Type: ACT_GATHER_INFO