Lucene search

K
kasperskyKaspersky LabKLA10369
HistoryAug 27, 2003 - 12:00 a.m.

KLA10369 ACE vulnerability in Trend Micro

2003-08-2700:00:00
Kaspersky Lab
threats.kaspersky.com
78

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.9

Confidence

Low

EPSS

0.024

Percentile

90.0%

Buffer overflows were found in the Trend Micro products. By exploiting these vulnerabilities malicious users can execute arbitrary code. These vulnerabilities can be exploited remotely via specially designed parameters.

Original advisories

Related products

Trend-Micro-HouseCall-ActiveX-Control

Trend-Micro-Damage-Cleanup-Server

CVE list

CVE-2003-0646 critical

Solution

Update to latest version

Impacts

  • ACE

Arbitrary code execution. Exploitation of vulnerabilities with this impact can lead to executing by abuser any code or commands at vulnerable machine or process.

Affected Products

  • Trend Micro HouseCall versions 5.5 and 5.7Trend Micro Damage Cleanup Server version 1.0

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.9

Confidence

Low

EPSS

0.024

Percentile

90.0%

Related for KLA10369