7.5
CVSSv2

CVE-2005-3560

Published: 16/11/2005 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Zone Labs (1) ZoneAlarm Pro 6.0, (2) ZoneAlarm Internet Security Suite 6.0, (3) ZoneAlarm Anti-Virus 6.0, (4) ZoneAlarm Anti-Spyware 6.0 up to and including 6.1, and (5) ZoneAlarm 6.0 allow remote malicious users to bypass the "Advanced Program Control and OS Firewall filters" setting via URLs in "HTML Modal Dialogs" (window.location.href) contained within JavaScript tags.

Vulnerable Product Search on Vulmon Subscribe to Product

zonelabs zonealarm 6.0

zonelabs zonealarm anti-spyware 6.1

zonelabs zonealarm antivirus 6.0

zonelabs zonealarm anti-spyware 6.0

zonelabs zonealarm security suite 6.0

Exploits

source: wwwsecurityfocuscom/bid/15347/info Zone Labs Zone Alarm is prone to a weakness that permits the bypassing of the Advanced Program Control protection Reports indicate that applications can create a modal dialog box displaying HTML, which can then be redirected to a remote site This would allow a malicious program to bypass Adva ...