Headline
CVE-2022-40778: MetaDefender ICAP Server - Trust your network traffic - OPSWAT
A stored Cross-Site Scripting (XSS) vulnerability in OPSWAT MetaDefender ICAP Server before 4.13.0 allows attackers to execute arbitrary JavaScript or HTML because of the blocked page response.
Advanced Threat Prevention for Network Traffic
Cybercriminals relentlessly attempt to upload malware to your systems. Employees accidentally visit malicious websites or download harmful files and vulnerable software from the internet. Both internal and external users intendedly or unintendedly submit files containing sensitive data.
Enterprises need a powerful multi-layered cybersecurity system to prevent harmful, offensive or inappropriate content.
MetaDefender ICAP Server protects your systems and users by inspecting every file traveling through your network. Every file is scanned for malware and vulnerabilities. With custom policies and workflows, suspicious files can be blocked or deeply sanitized. Sensitive information is blocked, removed or redacted before leaving your network. All files are remediated, before they are accessible to the end user.
MetaDefender ICAP Server is a plug-and-play solution to protect your network against malicious internet content.
How an ICAP Server works
MetaDefender ICAP Server provides ICAP interface on top of MetaDefender Core to provide industry leading advanced threat protection. Any content routed through the ICAP interface will be scanned and processed before entering your network and reaching end users.
MetaDefender ICAP Server can seamlessly integrate with any ICAP enabled network appliances, including reverse proxies, web application firewalls, load balancers, forward proxies, web gateways, SSL inspectors, etc.
ICAP Server Benefits
- Real-time comprehensive threat detection and prevention for your network
- Protection from malicious file uploads at the gateway of your network
- Protection against zero-day and advanced targeted attacks
- Detect file-based vulnerabilities before they are installed.
- No more sensitive data entering or leaving your organization without your discretion
- Custom policies, workflow and analysis rules to meet your unique security needs
- Simple integration with any ICAP enabled devices
Integration Use Cases
File Upload Security
Protect your network and application web servers from malicious file uploads using MetaDefender ICAP Server by inspecting files for any embedded malware and malicious content before they reach your website.
Includes: Application Delivery Controller, Reverse Proxy and Load Balancer, Web Application Firewall
Supports: F5 Advanced WAF™, F5 Big-IP® ASM™, F5 Big-IP LTM™, Citrix ADC, Avi Vantage (VMware), Symantec ProxySG
Enterprise File Transfer and Storage
Add another layer of trust to your business best practices by implementing MetaDefender ICAP Server at the central file transfer gateway or repository.
Includes: Managed File Transfer, Enterprise Storage, Secure Remote Access
Supports: Axway B2Bi, GoAnywhere MFT, Progress MOVEit, GlobalScape EFT, Dell EMC Isilon, Claroty SRA
Web Traffic Security and SSL Inspection
Prevent malicious files from being downloaded from the internet by your users. Screen web traffic before it reaches your secured network using MetaDefender ICAP Server integrated at the network gateway.
Includes: Forward Proxy, Web Gateway and Firewall, SSL Inspection and Termination, Intrusion Prevention System
Supports: Squid, McAfee Web Gateway™, Fortinet FortiGate®, F5 SSL Orchestrator™, A10 Thunder® SSLi®