vendor:
OfficeScan
by:
John Page (aka hyp3rlinx)
9,8
CVSS
CRITICAL
Unauthorized Remote Memory Corruption
119
CWE
Product Name: OfficeScan
Affected Version From: 11.0
Affected Version To: 12.0
Patch Exists: YES
Related CWE: CVE-2017-14089
CPE: a:trend_micro:officescan
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2017
TrendMicro OfficeScan XG Stack Memory Corruption POC
Remote unauthenticated attackers that can make connection the TrendMicro OfficeScan XG application targeting the 'cgiShowClientAdm.exe' process can cause memory corruption issues.
Mitigation:
Upgrade to the latest version of TrendMicro OfficeScan XG