CVE-2007-1169: Medium severity trend micro serverprotect for linux vulnerability
The web interface in Trend Micro ServerProtect for Linux (SPLX) 1.25, 1.3, and 2.5 before 20070216 accepts logon requests through unencrypted HTTP, which might allow remote attackers to obtain credentials by sniffing the network.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-1169?
CVE-2007-1169 is rated as a medium severity vulnerability due to the risk of credential exposure.
How do I fix CVE-2007-1169?
To fix CVE-2007-1169, configure the web interface of Trend Micro ServerProtect for Linux to use HTTPS instead of unencrypted HTTP.
What versions are affected by CVE-2007-1169?
CVE-2007-1169 affects Trend Micro ServerProtect for Linux versions 1.25, 1.3, and 2.5 before the patch released on February 16, 2007.
What can attackers gain from exploiting CVE-2007-1169?
Attackers exploiting CVE-2007-1169 may gain access to user credentials transmitted over the network.
Is CVE-2007-1169 still relevant today?
While CVE-2007-1169 is an older vulnerability, it remains relevant for organizations using outdated versions of Trend Micro ServerProtect for Linux.