CVE-2003-1344: Medium severity trend micro virus control system vulnerability
Trend Micro Virus Control System (TVCS) Log Collector allows remote attackers to obtain usernames, encrypted passwords, and other sensitive information via a URL request for getservers.exe with the action parameter set to "selects1", which returns log files.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2003-1344?
CVE-2003-1344 has been classified as a high severity vulnerability due to the potential exposure of sensitive credentials.
How do I fix CVE-2003-1344?
To mitigate CVE-2003-1344, it is crucial to restrict access to the getservers.exe file and implement proper authentication controls.
What type of data is exposed by CVE-2003-1344?
CVE-2003-1344 allows attackers to access usernames, encrypted passwords, and other sensitive information from log files.
Which software is affected by CVE-2003-1344?
CVE-2003-1344 affects Trend Micro Virus Control System installations.
Can CVE-2003-1344 be exploited remotely?
Yes, CVE-2003-1344 can be exploited remotely by sending a specific URL request to the vulnerable application.