Lucene search

K
kasperskyKaspersky LabKLA10371
HistoryNov 17, 2008 - 12:00 a.m.

KLA10371 ACE vulnerability in Trend Micro ServerProtect

2008-11-1700:00:00
Kaspersky Lab
threats.kaspersky.com
42

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.1

Confidence

Low

EPSS

0.078

Percentile

94.2%

Buffer overflows were found in Trend Micro ServerProtect. By exploiting this vulnerability malicious users can execute arbitrary code. This vulnerability can be exploited remotely via unknown vectors.

Original advisories

Related products

Trend-Micro-ServerProtect-for-Windows-NetWare

CVE list

CVE-2008-0014 critical

CVE-2008-0013 critical

CVE-2008-0012 critical

Solution

Update to latest version

Impacts

  • ACE

Arbitrary code execution. Exploitation of vulnerabilities with this impact can lead to executing by abuser any code or commands at vulnerable machine or process.

Affected Products

  • Trend Micro ServerProtect versions 5.7 and 5.58

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.1

Confidence

Low

EPSS

0.078

Percentile

94.2%