CVE-2000-0007: Medium severity Trend Micro PC-Cillin vulnerability
Trend Micro PC-Cillin does not restrict access to its internal proxy port, allowing remote attackers to conduct a denial of service.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Restrict access to the product's internal proxy port so it is not accessible to untrusted remote hosts. Configure PC-Cillin (or its host) to limit the proxy to localhost or to specific trusted interfaces/IPs and/or enable any built-in access controls for the proxy port.
Trend Micro PC-Cillin Internet Security internal proxy port access = restricted - Compensating control
If product configuration cannot adequately restrict access, block or restrict the internal proxy port at the network perimeter or host-based firewall (allow only localhost or trusted management IPs) to prevent remote attackers from reaching the port.
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0007?
CVE-2000-0007 is considered a moderate severity vulnerability due to its potential to cause denial of service.
How do I fix CVE-2000-0007?
To fix CVE-2000-0007, restrict access to the internal proxy port on Trend Micro PC-Cillin.
What software is affected by CVE-2000-0007?
CVE-2000-0007 affects Trend Micro PC-Cillin version 6.0.
What can remote attackers do with CVE-2000-0007?
Remote attackers can exploit CVE-2000-0007 to perform denial of service attacks against the affected system.
Is there a workaround for CVE-2000-0007?
A possible workaround for CVE-2000-0007 is to implement firewall rules that control access to the internal proxy port.