Trend Micro Interscan Applet Trap '//' Bypass Vulnerability
BID:2996
Info
Trend Micro Interscan Applet Trap '//' Bypass Vulnerability
| Bugtraq ID: | 2996 |
| Class: | Input Validation Error |
| CVE: |
CVE-2001-1026 |
| Remote: | No |
| Local: | Yes |
| Published: | Jul 09 2001 12:00AM |
| Updated: | Jul 11 2009 06:56AM |
| Credit: | Discovered and posted to Bugtraq by eDvice Security Services <[email protected]> on July 9, 2001. |
| Vulnerable: |
Trend Micro Interscan Applet Trap 2.0 |
| Not Vulnerable: | |
Discussion
Trend Micro Interscan Applet Trap '//' Bypass Vulnerability
Due to a flaw in Trend Micro's Interscan Applet Trap, it is possible for a user to view any restricted web site. This is acheivable by affixing an additional '/' to an unauthorized URL.
Due to a flaw in Trend Micro's Interscan Applet Trap, it is possible for a user to view any restricted web site. This is acheivable by affixing an additional '/' to an unauthorized URL.
Exploit / POC
Trend Micro Interscan Applet Trap '//' Bypass Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Trend Micro Interscan Applet Trap '//' Bypass Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Trend Micro Interscan Applet Trap '//' Bypass Vulnerability
References:
References:
- Interscan Applet Trap (Trend Micro)