Trendmicro IWSS 3.1 Local Privilege Escalation Vulnerability
BID:50380
Info
Trendmicro IWSS 3.1 Local Privilege Escalation Vulnerability
| Bugtraq ID: | 50380 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 26 2011 12:00AM |
| Updated: | Oct 26 2011 12:00AM |
| Credit: | Buguroo Offensive Security |
| Vulnerable: |
Trend Micro InterScan WebSecuritySuite 3.1 |
| Not Vulnerable: | |
Discussion
Trendmicro IWSS 3.1 Local Privilege Escalation Vulnerability
Trendmicro IWSS is prone to a local privilege-escalation vulnerability.
Local attackers can exploit this issue to execute arbitrary code with root privileges and completely compromise the affected computer.
Trendmicro IWSS 3.1 is vulnerable; other versions may also be affected.
Trendmicro IWSS is prone to a local privilege-escalation vulnerability.
Local attackers can exploit this issue to execute arbitrary code with root privileges and completely compromise the affected computer.
Trendmicro IWSS 3.1 is vulnerable; other versions may also be affected.
Exploit / POC
Trendmicro IWSS 3.1 Local Privilege Escalation Vulnerability
The following exploit is available:
The following exploit is available:
Solution / Fix
Trendmicro IWSS 3.1 Local Privilege Escalation Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Trendmicro IWSS 3.1 Local Privilege Escalation Vulnerability
References:
References:
- Trendmicro IWSS Homepage (TrendMicro)
- Trendmicro IWSS 3.1 privilege escalation (Buguroo Offensive Security)