Bypassing Content Scanning in Trend Micro InterScan VirusWall HTTP Proxy 3.6

Bypassing Content Scanning in Trend Micro InterScan VirusWall HTTP Proxy 3.6

CVE-2002-0440 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Trend Micro InterScan VirusWall HTTP proxy 3.6 with the "Skip scanning if Content-length equals 0" option enabled allows malicious web servers to bypass content scanning via a Content-length header set to 0, which is often ignored by HTTP clients.

Learn more about our Web App Pen Testing.