Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Multiple Products Full/Half Width Unicode Detection Evasion Vulnerability

Multiple products are reportedly prone to a vulnerability that may allow malicious HTTP traffic to bypass detection.

Attackers may send this type of HTTP data to evade detection and perform further attacks.

Cisco has stated that all IOS releases that support the Firewall/IPS feature set are affected. Although we currently have no definitive list of such versions, Symantec is investigating the matter and will update this BID's list of vulnerable systems appropriately.







 

Privacy Statement
Copyright 2009, SecurityFocus