Trend Micro ServerProtect Multiple Code Execution Vulnerabilities
RISK: Medium Risk
Multiple vulnerabilities have been identified in Trend Micro ServerProtect, which could be exploited by remote attackers to take complete control of an affected system.
An access control error within an unspecified RPC interface could allow remote unauthenticated attackers to gain administrative access to a vulnerable server.
Various unspecified heap overflow vulnerabilities could allow remote attackers to crash an affected server or execute arbitrary code.
Impact
- Elevation of Privilege
- Remote Code Execution
System / Technologies affected
- Trend Micro ServerProtect version 5.58 and prior
- Trend Micro ServerProtect version 5.7 and prior
Solutions
There is no patch available for this vulnerability currently.
Vulnerability Identifier
- CVE-2006-5268
- CVE-2006-5269
- CVE-2007-0072
- CVE-2007-0073
- CVE-2007-0074
- CVE-2008-0012
- CVE-2008-0013
- CVE-2008-0014
Source
Related Link
Share with