Vulnerabilities
Vulnerable Software
Trend Micro:  >> Officescan  Security Vulnerabilities
Trend OfficeScan Corporate Edition 5.58 and possibly earler does not drop privileges when opening a help window from a virus detection pop-up window, which allows local users to gain SYSTEM privileges.
CVSS Score
7.2
EPSS Score
0.001
Published
2004-12-31
Trend Micro OfficeScan 3.0 - 6.0 has default permissions of "Everyone Full Control" on the installation directory and registry keys, which allows local users to disable virus protection.
CVSS Score
4.6
EPSS Score
0.001
Published
2004-05-07
The default installation of Trend Micro OfficeScan 3.0 through 3.54 and 5.x allows remote attackers to bypass authentication from cgiChkMasterPasswd.exe and gain access to the web management console via a direct request to cgiMasterPwd.exe.
CVSS Score
7.5
EPSS Score
0.061
Published
2003-12-31
Buffer overflow in pop3trap.exe for PC-cillin 2000, 2002, and 2003 allows local users to execute arbitrary code via a long input string to TCP port 110 (POP3).
CVSS Score
4.6
EPSS Score
0.003
Published
2002-12-18
Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.53 allows remote attackers to access sensitive information from the hotdownload directory without authentication, such as the ofcscan.ini configuration file, which contains a weakly encrypted password.
CVSS Score
5.0
EPSS Score
0.011
Published
2001-10-15
Vulnerability in cgiWebupdate.exe in Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.5.2 through 3.5.4 allows remote attackers to read arbitrary files.
CVSS Score
5.0
EPSS Score
0.008
Published
2001-08-22
Trend Micro OfficeScan allows remote attackers to replay administrative commands and modify the configuration of OfficeScan clients.
CVSS Score
6.4
EPSS Score
0.009
Published
2000-03-03
The Trend Micro OfficeScan client tmlisten.exe allows remote attackers to cause a denial of service via malformed data to port 12345.
CVSS Score
5.0
EPSS Score
0.008
Published
2000-02-28
The Trend Micro OfficeScan client allows remote attackers to cause a denial of service by making 5 connections to port 12345, which raises CPU utilization to 100%.
CVSS Score
5.0
EPSS Score
0.052
Published
2000-02-28


Contact Us

Shodan ® - All rights reserved