Check Point Reference: | CPAI-2007-106 |
Date Published: | 18 Sep 2007 |
Severity: | Critical |
Last Updated: | Monday 01 January, 2007 |
Source: | Secunia Advisory: SA26523 |
Industry Reference: | CVE-2007-4218 |
Protection Provided by: | |
Who is Vulnerable? | Trend Micro ServerProtect for Windows 5.58 Build 1176 Trend Micro ServerProtect for Windows 5.58 Patch3 and prior |
Vulnerability Description | Trend Micro ServerProtect is prone to multiple buffer overflow vulnerabilities. Trend Micro ServerProtect is a centrally managed virus protection console for enterprise-class servers. A remote attacker may exploit these issues to execute arbitrary code on a vulnerable system via a specially crafted RPC request. |
Update/Patch Avaliable | Download Security Patch 4 - Build 1185: Trend Micro |
Vulnerability Details | The vulnerabilities are due to several boundary errors in various functions of Trend Micro ServerProtect that fails to properly handle malformed RPC requests. A remote attacker could specially craft a malicious RPC request that will cause the system to execute arbitrary commands. |