← All CVEs

CVE-2005-3560

high · 7.5

Zone Labs (1) ZoneAlarm Pro 6.0, (2) ZoneAlarm Internet Security Suite 6.0, (3) ZoneAlarm Anti-Virus 6.0, (4) ZoneAlarm Anti-Spyware 6.0 through 6.1, and (5) ZoneAlarm 6.0 allow remote attackers to bypass the "Advanced Program Control and OS Firewall filters" setting via URLs in "HTML Modal Dialogs" (window.location.href) contained within JavaScript tags.

7.5
CVSS
15.5%
EPSS (exploit prob.)
97th
EPSS percentile
2005-11-16
Published

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

VendorProductAffected versions
zonelabszonealarm6.0
zonelabszonealarm6.0
zonelabszonealarm_anti-spyware6.0
zonelabszonealarm_anti-spyware6.1
zonelabszonealarm_antivirus6.0
zonelabszonealarm_security_suite6.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2005-3560