First published: Sun Dec 25 2011(Updated: )
Stack-based buffer overflow in the CGenericScheduler::AddTask function in cmdHandlerRedAlertController.dll in CmdProcessor.exe in Trend Micro Control Manager 5.5 before Build 1613 allows remote attackers to execute arbitrary code via a crafted IPC packet to TCP port 20101.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Trend Micro Control Manager | <=5.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-5001 is classified as a critical vulnerability due to its potential for remote code execution.
To mitigate CVE-2011-5001, users should upgrade to Trend Micro Control Manager version 5.5 Build 1613 or later.
CVE-2011-5001 affects all versions of Trend Micro Control Manager prior to Build 1613.
CVE-2011-5001 can be exploited through a stack-based buffer overflow using crafted IPC packets sent to TCP port 20101.
CVE-2011-5001 is a remote vulnerability, allowing attackers to execute arbitrary code from a remote location.