SurfControl SuperScout only filters packets containing both an HTTP GET request and a Host header, which allows local users to bypass filtering by fragmenting packets so that no packet contains both data elements.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/139315 | third party advisory us government resource |
http://securitytracker.com/id?1001801 | vdb entry |