First published: Fri Dec 15 2017(Updated: )
A vulnerability in Trend Micro ScanMail for Exchange 12.0 exists in which certain specific installations that utilize a uncommon feature - Other Update Sources - could be exploited to overwrite sensitive files in the ScanMail for Exchange directory.
Credit: security@trendmicro.com
Affected Software | Affected Version | How to fix |
---|---|---|
Trendmicro Scanmail | =12.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14091 is a vulnerability in Trend Micro ScanMail for Exchange 12.0 that allows for the overwriting of sensitive files in the ScanMail for Exchange directory.
You are affected by CVE-2017-14091 if you have Trend Micro ScanMail for Exchange 12.0 installed and are using the uncommon feature - Other Update Sources.
CVE-2017-14091 has a severity rating of 7.5 (High).
To protect yourself from CVE-2017-14091, ensure that you have applied the necessary patches and updates provided by Trend Micro.
You can find more information about CVE-2017-14091 on the Trend Micro website and the Core Security advisories.