First published: Tue Sep 16 2008(Updated: )
Stack-based buffer overflow in cgiRecvFile.exe in Trend Micro OfficeScan 7.3 patch 4 build 1362 and other builds, OfficeScan 8.0 and 8.0 SP1, and Client Server Messaging Security 3.6 allows remote attackers to execute arbitrary code via an HTTP request containing a long ComputerName parameter.
Credit: PSIRT-CNA@flexerasoftware.com
Affected Software | Affected Version | How to fix |
---|---|---|
Trend Micro Client-server-messaging Security | =2.0 | |
Trend Micro Client-server-messaging Security | =3.0 | |
Trend Micro Client-server-messaging Security | =3.5 | |
Trend Micro Client-server-messaging Security | =3.6 | |
Trend Micro OfficeScan | =7.0 | |
Trend Micro OfficeScan | =7.3 | |
Trend Micro OfficeScan | =7.3-patch_4 | |
Trend Micro OfficeScan | =8.0 | |
Trend Micro OfficeScan | =8.0-sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.