CVE-2005-3560
Title: Zonelabs Zonealarm Security Suite
Other
Proof Of Concept
PoC Available for CVE-2005-3560
CWE Category
NVD-CWE-noinfo
Published Date
Nov 16, 2005
Modified Date
Apr 03, 2025
Exploit Status
Available
Score
7.5
CVSS v2.0
Exploit Probability (EPSS)
4.44%
Vulnerability Summary
CVE-2005-3560: Zone Labs (1) ZoneAlarm Pro 6.0, (2) ZoneAlarm Internet Security Suite 6.0, (3) ZoneAlarm Anti-Virus 6.0, (4) ZoneAlarm Anti-Spyware 6.0 through 6.1, and (5) ZoneAlarm 6.0 allow remote attackers to bypass the "Advanced Program Control and OS Firewall filters" setting via URLs in "HTML Modal Dialogs" (window.location.href) contained within JavaScript tags.
Impacted Vendors
Reference Links
http://secunia.com/advisories/17450
http://securityreason.com/securityalert/155
http://www.osvdb.org/20677
http://www.securityfocus.com/archive/1/415968
http://www.securityfocus.com/bid/15347
https://exchange.xforce.ibmcloud.com/vulnerabilities/22971
http://secunia.com/advisories/17450
http://securityreason.com/securityalert/155
http://www.osvdb.org/20677
http://www.securityfocus.com/archive/1/415968
http://www.securityfocus.com/bid/15347
https://exchange.xforce.ibmcloud.com/vulnerabilities/22971
CVSS v2.0
Source Entity
[email protected]
Severity
HIGH
7.5
Access Vector
N/A
Authentication
N/A
RAW VECTOR
AV:N/AC:L/Au:N/C:P/I:P/A:P
Associated Attack Patterns (CAPEC)
Total: PatternsNo specific attack patterns mapped.
Likelihood
Severity
Page /
CVE-2005-3560 Exploits & PoCs (Proof Of Concept)
Exploit-DB
https://www.exploit-db.com/exploits/26479
MODIFIED
Vulnerability data or affected products updated.
PUBLISHED
Vulnerability first announced in NVD.
Attack Vector Matrix
Access Vector
N/A
Complexity
N/A
Privileges
N/A
Interaction
NONE
CVSS Vector String
AV:N/AC:L/Au:N/C:P/I:P/A:P
Affected Stack
No specific products linked.