CVE-2009-1348
The AV engine before DAT 5600 in McAfee VirusScan, Total Protection, Internet Security, SecurityShield for Microsoft ISA Server, Security for Microsoft Sharepoint, Security for Email Servers, Email Gateway, and Active Virus Defense allows remote attackers to bypass virus detection via (1) an invalid Headflags field in a malformed RAR archive, (2) an invalid Packsize field in a malformed RAR archive, or (3) an invalid Filelength field in a malformed ZIP archive.
Published:Apr 30, 2009
Last Modified:Apr 23, 2026
EPS:Apr 30, 2009
EPSS Score:0.00399
CVSS Score:7.6
Affected Products
Vendor
Product
Action
Vendor
Mcafee
Product
Active Virus Defense
Mcafee
Active Virus Defense
Vendor
Mcafee
Product
Active Virusscan
Mcafee
Active Virusscan
Vendor
Mcafee
Product
Email Gateway
Mcafee
Email Gateway
Vendor
Mcafee
Product
Internet Security Suite
Mcafee
Internet Security Suite
Vendor
Mcafee
Product
Securityshield For Email Servers
Mcafee
Securityshield For Email Servers
Vendor
Mcafee
Product
Securityshield For Microsoft Isa Server
Mcafee
Securityshield For Microsoft Isa Server
Vendor
Mcafee
Product
Securityshield For Microsoft Sharepoint
Mcafee
Securityshield For Microsoft Sharepoint
Vendor
Mcafee
Product
Total Protection
Mcafee
Total Protection
Vendor
Mcafee
Product
Total Protection For Endpoint
Mcafee
Total Protection For Endpoint
Vendor
Mcafee
Product
Virusscan Commandline
Mcafee
Virusscan Commandline
Vendor
Mcafee
Product
Virusscan Enterprise
Mcafee
Virusscan Enterprise
Vendor
Mcafee
Product
Virusscan Plus
Mcafee
Virusscan Plus
Vendor
Mcafee
Product
Virusscan Usb
Mcafee
Virusscan Usb
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
