Throttle Capability in Swatch Allows Attackers to Evade Detection

Throttle Capability in Swatch Allows Attackers to Evade Detection

CVE-2002-0896 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

The throttle capability in Swatch may fail to report certain events if (1) the same type of event occurs after the throttle period, or (2) when multiple events matching the same "watchfor" expression do not occur after the throttle period, which could allow attackers to avoid detection.

Learn more about our Web Application Penetration Testing UK.