Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8xcp-44vr-gqpx

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Trend Micro ScanMail for Exchange (SMEX) before 3.81 and before 6.1 might install a back door account in smg_Smxcfg30.exe, which allows remote attackers to gain access to the web management interface via the vcc parameter, possibly "3560121183d3".

Trend Micro ScanMail for Exchange (SMEX) before 3.81 and before 6.1 might install a back door account in smg_Smxcfg30.exe, which allows remote attackers to gain access to the web management interface via the vcc parameter, possibly "3560121183d3".

EPSS

Процентиль: 86%
0.02964
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
около 22 лет назад

Trend Micro ScanMail for Exchange (SMEX) before 3.81 and before 6.1 might install a back door account in smg_Smxcfg30.exe, which allows remote attackers to gain access to the web management interface via the vcc parameter, possibly "3560121183d3".

EPSS

Процентиль: 86%
0.02964
Низкий

Дефекты

CWE-287