Stonesoft Information for VU#739224
HTTP content scanning systems full-width/half-width Unicode encoding bypass
- Vendor Information Help Date Notified: 16 Apr 2007
- Statement Date:
- Date Updated: 22 May 2007
StoneGate IPS version 4.0 and later have a good HTTP client request normalization and therefore can detect HTTP attacks that use this evasion technique. However, Stonesoft StoneGate IPS versions earlier than 4.0 are affected.
We are not aware of further vendor information regarding this vulnerability.
There are no additional comments at this time.
If you have feedback, comments, or additional information about this vulnerability, please send us email.