Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2003-1344

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2003-1344
Last Modified 02 Feb 2010 01:40:00
Published 31 Dec 2003 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2003-1344

Summary

Trend Micro Virus Control System (TVCS) Log Collector allows remote attackers to obtain usernames, encrypted passwords, and other sensitive information via a URL request for getservers.exe with the action parameter set to "selects1", which returns log files.

Vulnerable Systems

Application

  • Trend Micro Virus Control System


References

XF - trend-vcs-weak-encryption(11063)

BID - 6618

SECUNIA - 7881

VULNWATCH - 20030114 RE: [VulnWatch] Assorted Trend Vulns Rev 2.0


Last Updated: 27 May 2016 10:38:20