The default installation of Trend Micro OfficeScan 3.0 up to and including 3.54 and 5.x allows remote malicious users to bypass authentication from cgiChkMasterPasswd.exe and gain access to the web management console via a direct request to cgiMasterPwd.exe.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
trend micro officescan 3.1.1 |
||
trend micro officescan 3.13 |
||
trend micro officescan 3.5 |
||
trend micro officescan 3.0 |
||
trend micro officescan 3.54 |
||
trend micro officescan 3.11 |
||
trend micro virus buster 3.52 |
||
trend micro virus buster 3.53 |
||
trend micro virus buster 3.54 |