CVE-2001-0132: Low severity Trend Micro InterScan VirusWall vulnerability
Published Feb 14, 2001
·Updated
Interscan VirusWall 3.6.x and earlier follows symbolic links when uninstalling the product, which allows local users to overwrite arbitrary files via a symlink attack.
Affected Software
2 affected components
Trend Micro InterScan VirusWall<=3.6
Trend Micro InterScan VirusWall=3.0.1
Event History
Feb 14, 2001
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0132?
CVE-2001-0132 is considered to have a medium severity due to the potential for local users to manipulate files.
2
What products are affected by CVE-2001-0132?
CVE-2001-0132 affects Interscan VirusWall versions 3.6.x and earlier.
3
How do I fix CVE-2001-0132?
To fix CVE-2001-0132, update Interscan VirusWall to a version later than 3.6.x.
4
What is the impact of CVE-2001-0132?
The impact of CVE-2001-0132 allows local users to overwrite arbitrary files through a symlink attack during the uninstallation process.
5
Is CVE-2001-0132 a remote or local vulnerability?
CVE-2001-0132 is a local vulnerability, as it requires local user access to exploit.