Trend Micro Officescan vulnerabilities
29 known vulnerabilities affecting trend_micro/officescan.
Total CVEs
29
CISA KEV
0
Public exploits
5
Exploited in wild
0
Severity breakdown
CRITICAL9HIGH6MEDIUM14
Vulnerabilities
Page 2 of 2
CVE-2004-2430HIGHCVSS 7.2v3.0vcorporate_3.5+6 more2004-12-31
CVE-2004-2430 [HIGH] CVE-2004-2430: Trend OfficeScan Corporate Edition 5.58 and possibly earler does not drop privileges when opening a
Trend OfficeScan Corporate Edition 5.58 and possibly earler does not drop privileges when opening a help window from a virus detection pop-up window, which allows local users to gain SYSTEM privileges.
nvd
CVE-2004-2006MEDIUMCVSS 4.6v3.0vcorporate_3.5+5 more2004-05-07
CVE-2004-2006 [MEDIUM] CVE-2004-2006: Trend Micro OfficeScan 3.0 - 6.0 has default permissions of "Everyone Full Control" on the installat
Trend Micro OfficeScan 3.0 - 6.0 has default permissions of "Everyone Full Control" on the installation directory and registry keys, which allows local users to disable virus protection.
nvd
CVE-2003-1341HIGHCVSS 7.5PoCv3.0v3.1.1+4 more2003-12-31
CVE-2003-1341 [HIGH] CWE-16 CVE-2003-1341: The default installation of Trend Micro OfficeScan 3.0 through 3.54 and 5.x allows remote attackers
The default installation of Trend Micro OfficeScan 3.0 through 3.54 and 5.x allows remote attackers to bypass authentication from cgiChkMasterPasswd.exe and gain access to the web management console via a direct request to cgiMasterPwd.exe.
nvd
CVE-2002-1349MEDIUMCVSS 4.6PoCvcorporate_5.022002-12-18
CVE-2002-1349 [MEDIUM] CVE-2002-1349: Buffer overflow in pop3trap.exe for PC-cillin 2000, 2002, and 2003 allows local users to execute arb
Buffer overflow in pop3trap.exe for PC-cillin 2000, 2002, and 2003 allows local users to execute arbitrary code via a long input string to TCP port 110 (POP3).
nvd
CVE-2001-1151MEDIUMCVSS 5.0vcorporate_3.532001-10-15
CVE-2001-1151 [MEDIUM] CVE-2001-1151: Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.53 allows remote attackers to access s
Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.53 allows remote attackers to access sensitive information from the hotdownload directory without authentication, such as the ofcscan.ini configuration file, which contains a weakly encrypted password.
nvd
CVE-2001-1150MEDIUMCVSS 5.0vcorporate_3.5vcorporate_3.542001-08-22
CVE-2001-1150 [MEDIUM] CVE-2001-1150: Vulnerability in cgiWebupdate.exe in Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.5
Vulnerability in cgiWebupdate.exe in Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.5.2 through 3.5.4 allows remote attackers to read arbitrary files.
nvd
CVE-2000-0205MEDIUMCVSS 6.4v3.52000-03-03
CVE-2000-0205 [MEDIUM] CVE-2000-0205: Trend Micro OfficeScan allows remote attackers to replay administrative commands and modify the conf
Trend Micro OfficeScan allows remote attackers to replay administrative commands and modify the configuration of OfficeScan clients.
nvd
CVE-2000-0204MEDIUMCVSS 5.0PoCv3.52000-02-28
CVE-2000-0204 [MEDIUM] CVE-2000-0204: The Trend Micro OfficeScan client allows remote attackers to cause a denial of service by making 5 c
The Trend Micro OfficeScan client allows remote attackers to cause a denial of service by making 5 connections to port 12345, which raises CPU utilization to 100%.
nvd
CVE-2000-0203MEDIUMCVSS 5.0v3.52000-02-28
CVE-2000-0203 [MEDIUM] CVE-2000-0203: The Trend Micro OfficeScan client tmlisten.exe allows remote attackers to cause a denial of service
The Trend Micro OfficeScan client tmlisten.exe allows remote attackers to cause a denial of service via malformed data to port 12345.
nvd
← Previous2 / 2