5
CVSSv2

CVE-2002-1911

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

ZoneAlarm Pro 3.0 and 3.1, when configured to block all traffic, allows remote malicious users to cause a denial of service (CPU and memory consumption) via a large number of SYN packets (SYN flood). NOTE: the vendor was not able to reproduce the issue.

Vulnerable Product Search on Vulmon Subscribe to Product

zonelabs zonealarm 3.1

zonelabs zonealarm 3.0

Exploits

source: wwwsecurityfocuscom/bid/5975/info ZoneAlarm is a firewall software package designed for Microsoft Windows operating systems It is distributed and maintained by Zone Labs ZoneAlarm does not properly handle some types of traffic When ZoneAlarm is configured to block all traffic, and a Syn flood of 300 or more packets is sent to ...