The default installation of Trend Micro OfficeScan 3.0 through 3.54 and 5.x allows remote attackers to bypass authentication from cgiChkMasterPasswd.exe and gain access to the web management console via a direct request to cgiMasterPwd.exe.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:46
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0020.html - | |
References | () http://kb.trendmicro.com/solutions/solutionDetail.asp?solutionId=13353 - | |
References | () http://secunia.com/advisories/7881 - Vendor Advisory | |
References | () http://www.osvdb.org/6181 - | |
References | () http://www.securityfocus.com/bid/6616 - Exploit, Patch | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/11059 - |
Information
Published : 2003-12-31 05:00
Updated : 2024-11-20 23:46
NVD link : CVE-2003-1341
Mitre link : CVE-2003-1341
CVE.ORG link : CVE-2003-1341
JSON object : View
Products Affected
trend_micro
- virus_buster
- officescan
CWE
CWE-16
Configuration