CVE-2004-0933
Computer Associates (CA) InoculateIT 6.0, eTrust Antivirus r6.0 through r7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detection, EZ-Armor 2.0 through 2.4, and EZ-Antivirus 6.1 through 6.3 allow…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 20.7%, higher than 97% of all known CVEs. Patch or mitigate before the next change window.
Description
Computer Associates (CA) InoculateIT 6.0, eTrust Antivirus r6.0 through r7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detection, EZ-Armor 2.0 through 2.4, and EZ-Antivirus 6.1 through 6.3 allow remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 20.69% probability · 97th percentile
- CISA KEV
- Not listed
- Affected
- archive zip/archive zip · broadcom/brightstor arcserve backup · broadcom/etrust antivirus · broadcom/etrust antivirus gateway · broadcom/etrust ez antivirus · broadcom/etrust ez armor · broadcom/etrust intrusion detection · broadcom/etrust secure content manager · broadcom/inoculateit · ca/etrust antivirus · ca/etrust secure content manager · eset software/nod32 antivirus · kaspersky lab/kaspersky anti-virus · mcafee/antivirus engine · rav antivirus/rav antivirus desktop · rav antivirus/rav antivirus for file servers · rav antivirus/rav antivirus for mail servers · sophos/sophos anti-virus · sophos/sophos puremessage anti-virus · sophos/sophos small business suite · +3 more
- Source
- cve@mitre.org
References
- http://supportconnectw.ca.com/public/ca_common_docs/arclib_vuln.asp
- http://www.idefense.com/application/poi/display?id=153&type=vulnerabilities&flashstatus=true
- http://www.securityfocus.com/bid/11448Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17761
- http://supportconnectw.ca.com/public/ca_common_docs/arclib_vuln.asp
- http://www.idefense.com/application/poi/display?id=153&type=vulnerabilities&flashstatus=true
- http://www.securityfocus.com/bid/11448Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17761
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.