Trend Micro OfficeScan 3.x - CGI Directory Insufficient Permissions

EDB-ID:

22171


Author:

Rod Boron

Type:

remote


Platform:

Windows

Date:

2003-01-15


Become a Certified Penetration Tester

Enroll in Penetration Testing with Kali Linux , the course required to become an Offensive Security Certified Professional (OSCP)

GET CERTIFIED

source: https://www.securityfocus.com/bid/6616/info

A vulnerability has been reported for Trend Micro OfficeScan that may allow attackers to access programs residing in the cgi directory of the OfficeScan installation.

http://x.x.x.x/officescan/cgi/cgiMasterPwd.exe