CVE-2017-14083: High severity trend micro officescan corporate edition vulnerability
Published Oct 5, 2017
·Updated
A vulnerability in Trend Micro OfficeScan 11.0 and XG allows remote unauthenticated users who can access the system to download the OfficeScan encryption file.
Affected Software
2 affected components
trendmicro Officescan=11.0-sp1
trendmicro Officescan=12.0
Remediation
Patch Available
Event History
Oct 5, 2017
CVE Published
via MITRE·01:00 PM
Data Sourced
via MITRE·01:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-14083?
CVE-2017-14083 has a high severity as it allows remote unauthenticated users to access sensitive encryption files.
2
How do I fix CVE-2017-14083?
To fix CVE-2017-14083, ensure that you are running the latest version of Trend Micro OfficeScan with all security updates applied.
3
Who is affected by CVE-2017-14083?
CVE-2017-14083 affects users of Trend Micro OfficeScan versions 11.0 SP1 and 12.0.
4
What type of vulnerability is CVE-2017-14083?
CVE-2017-14083 is a remote key disclosure vulnerability that exposes sensitive information.
5
What can attackers do with CVE-2017-14083?
Attackers exploiting CVE-2017-14083 can download the OfficeScan encryption file, compromising the security of the system.