KLA10370
DoS vulnerability in OfficeScan
Updated: 06/01/2019
Detect date
?
03/17/2008
Severity
?
High
Description

Multiple serious vulnerabilities have been found in OfficeScan. Malicious users can exploit these vulnerabilities to cause denial of service. Below is a complete list of vulnerabilities

  1. A buffer overflow can be exploited remotely via a specially designed password;
  2. A NULL pointer can be exploited remotely via a specially designed request..
Affected products

Trend Micro OfficeScan Corporate Edition 8.0 versions 8.0 patch 2 build 1189 and earlier
Trend Micro OfficeScan Corporate Edition versions 7.3 patch 3 build 1314 and earlier

Solution

Update to latest version

Impacts
?
DoS 
[?]
CVE-IDS
?
CVE-2008-13665.0Critical
CVE-2008-13656.4High