Skip to main content

Vendor/product archive

trend_micro / officescan CVEs

Beta · best-effort

29 CVEs tagged to trend_micro / officescan9 Critical, 6 High, 14 Medium, 0 Low, 0 Unrated.

CVE-2008-3862

Published Oct 23, 2008

Stack-based buffer overflow in CGI programs in the server in Trend Micro OfficeScan 7.3 Patch 4 build 1367 and other builds before 1374, and 8.0 SP1 Patch 1 before build 3110, all…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-4403

Published Oct 3, 2008

The CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 allow remote attackers to cause a denial of service (NULL p…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-4402

Published Oct 3, 2008

Multiple buffer overflows in CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 allow remote attackers to execute…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-3364

Published Jul 30, 2008

Buffer overflow in the ObjRemoveCtrl Class ActiveX control in OfficeScanRemoveCtrl.dll 7.3.0.1020 in Trend Micro OfficeScan Corp Edition (OSCE) Web-Deployment 7.0, 7.3 build 1343…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-3454

Published Jun 27, 2007

Stack-based buffer overflow in CGIOCommon.dll before 8.0.0.1042 in Trend Micro OfficeScan Corporate Edition 8.0 allows remote attackers to execute arbitrary code via long crafted…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-3455

Published Jun 27, 2007

cgiChkMasterPwd.exe before 8.0.0.142 in Trend Micro OfficeScan Corporate Edition 8.0 allows remote attackers to bypass the password requirement and gain access to the Management C…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-6178

Published Nov 30, 2006

Buffer overflow in PCCSRV\Web_console\RemoteInstallCGI\Wizard.exe for Trend Micro OfficeScan 7.3 before build 7.3.0.1087 allows remote attackers to execute arbitrary code via unkn…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-6179

Published Nov 30, 2006

Buffer overflow in PCCSRV\Web_console\RemoteInstallCGI\CgiRemoteInstall.exe for Trend Micro OfficeScan 7.3 before build 7.3.0.1089 allows remote attackers to execute arbitrary cod…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5212

Published Oct 10, 2006

Trend Micro OfficeScan 6.0 in Client/Server/Messaging (CSM) Suite for SMB 2.0 before 6.0.0.1385, and OfficeScan Corporate Edition (OSCE) 6.5 before 6.5.0.1418, 7.0 before 7.0.0.12…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5157

Published Oct 5, 2006

Format string vulnerability in the ActiveX control (ATXCONSOLE.OCX) in TrendMicro OfficeScan Corporate Edition (OSCE) before 7.3 Patch 1 allows remote attackers to execute arbitra…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-1381

Published Mar 24, 2006

Trend Micro OfficeScan 5.5, and probably other versions before 6.5, uses insecure DACLs for critical files, which allows local users to gain SYSTEM privileges by modifying tmliste…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2005-3379

Published Oct 30, 2005

Multiple interpretation error in Trend Micro (1) PC-Cillin 2005 12.0.1244 with the 7.510.1002 engine and (2) OfficeScan 7.0 with the 7.510.1002 engine allows remote attackers to b…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-2430

Published Dec 31, 2004

Trend OfficeScan Corporate Edition 5.58 and possibly earler does not drop privileges when opening a help window from a virus detection pop-up window, which allows local users to g…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2004-2006

Published May 7, 2004

Trend Micro OfficeScan 3.0 - 6.0 has default permissions of "Everyone Full Control" on the installation directory and registry keys, which allows local users to disable virus prot…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1151

Published Oct 15, 2001

Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.53 allows remote attackers to access sensitive information from the hotdownload directory without authentication, suc…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 29 CVEsPage 1 of 2