CVE-2009-1240

IBM Proventia engine 4.9.0.0.44 - Auth Bypass

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in the IBM Proventia engine 4.9.0.0.44 20081231, as used in IBM Proventia Network Mail Security System, Network Mail Security System Virtual Appliance, Desktop Endpoint Security, Network Multi-Function Security (MFS), and possibly other products, allows remote attackers to bypass detection of malware via a modified RAR archive.

References (7)

Core 7
Core References
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/504995/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/34345
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/504987/100/0/threaded
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/502369/100/0/threaded
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/504992/100/0/threaded

Scores

EPSS 0.0273
EPSS Percentile 84.6%

Details

Status published
Products (4)
ibm/network_multi-function_security
ibm/proventia_desktop_endpoint_security
ibm/proventia_network_mail_security_system
ibm/proventia_network_mail_security_system_virtual_appliance
Published Apr 03, 2009
Tracked Since Feb 18, 2026