Trend Micro ServerProtect Multiple Remote Vulnerabilities
BID:32261
Info
Trend Micro ServerProtect Multiple Remote Vulnerabilities
| Bugtraq ID: | 32261 |
| Class: | Unknown |
| CVE: |
CVE-2006-5268 CVE-2006-5269 CVE-2008-0012 CVE-2008-0013 CVE-2008-0014 CVE-2007-0072 CVE-2007-0073 CVE-2007-0074 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 11 2008 12:00AM |
| Updated: | Nov 14 2008 03:04PM |
| Credit: | David Dewey and Chris Valasek of IBM X-Force |
| Vulnerable: |
Trend Micro ServerProtect for Windows 5.58 Trend Micro ServerProtect for Windows Trend Micro ServerProtect for Novell Netware Trend Micro ServerProtect for Linux Trend Micro ServerProtect 5.7 Trend Micro ServerProtect 5.58 (Security Patch Trend Micro ServerProtect 5.58 |
| Not Vulnerable: | |
Discussion
Trend Micro ServerProtect Multiple Remote Vulnerabilities
Trend Micro ServerProtect is prone to multiple remote vulnerabilities, including an authentication-bypass issue and multiple heap-based buffer-overflow issues.
Few technical details are currently available. We will update this BID as more information emerges.
Successfully exploiting the buffer-overflow issues may allow an attacker to execute arbitrary code with SYSTEM-level privileges or crash the affected application, denying service to legitimate users. Successfully exploiting the authentication-bypass vulnerability will allow the attacker administrative access to the vulnerable application.
Trend Micro ServerProtect 5.58 and 5.7 are vulnerable; additional versions may also be affected.
Trend Micro ServerProtect is prone to multiple remote vulnerabilities, including an authentication-bypass issue and multiple heap-based buffer-overflow issues.
Few technical details are currently available. We will update this BID as more information emerges.
Successfully exploiting the buffer-overflow issues may allow an attacker to execute arbitrary code with SYSTEM-level privileges or crash the affected application, denying service to legitimate users. Successfully exploiting the authentication-bypass vulnerability will allow the attacker administrative access to the vulnerable application.
Trend Micro ServerProtect 5.58 and 5.7 are vulnerable; additional versions may also be affected.
Exploit / POC
Trend Micro ServerProtect Multiple Remote Vulnerabilities
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Trend Micro ServerProtect Multiple Remote Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Trend Micro ServerProtect Multiple Remote Vulnerabilities
References:
References:
- The Scoop on the X-Force TrendMicro Advisories (David Dewey)
- Trend Micro Homepage (Trend Micro)
- Trend Micro ServerProtect [PROCEDURE NAME REDACTED] Heap Overflow (IBM X-Force)
- Trend Micro ServerProtect [PROCEDURE NAME REDACTED] Heap Overflows (3) (IBM X-Force)
- Trend Micro ServerProtect [PROCEDURE NAME REDACTED] Heap Overflows (3) (IBM X-Force)
- Trend Micro ServerProtect Unauthenticated Remote Administration (IBM X-Force)
- VU#768681 - Trend Micro ServerProtect contains multiple vulnerabilities (US-CERT)