Stonesoft Information for VU#739224
HTTP content scanning systems full-width/half-width Unicode encoding bypass
- Vendor Information Help Date Notified: 16 Apr 2007
- Statement Date:
- Date Updated: 22 May 2007
Status
Affected
Vendor Statement
StoneGate IPS version 4.0 and later have a good HTTP client request normalization and therefore can detect HTTP attacks that use this evasion technique. However, Stonesoft StoneGate IPS versions earlier than 4.0 are affected.
Vendor Information
We are not aware of further vendor information regarding this vulnerability.
Vendor References
None
Addendum
There are no additional comments at this time.
If you have feedback, comments, or additional information about this vulnerability, please send us email.