Record summary

CVE-2002-0440 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.

Description

Trend Micro InterScan VirusWall HTTP proxy 3.6 with the "Skip scanning if Content-length equals 0" option enabled allows malicious web servers to bypass content scanning via a Content-length header set to 0, which is often ignored by HTTP clients.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBTrend Micro Interscan VirusWall 3.5/3.6 - Content-Length Scan BypassExploitDB exploitby Jochen Thomas BauerNot analyzed1 file
ExploitDB

PoC details

References

5