Описание
Trend Micro OfficeScan 5.5, and probably other versions before 6.5, uses insecure DACLs for critical files, which allows local users to gain SYSTEM privileges by modifying tmlisten.exe.
Ссылки
- Vendor Advisory
- URL Repurposed
- Vendor Advisory
- URL Repurposed
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:trend_micro:officescan:5.5:*:*:*:*:*:*:*
EPSS
Процентиль: 59%
0.00384
Низкий
10 Critical
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Trend Micro OfficeScan 5.5, and probably other versions before 6.5, uses insecure DACLs for critical files, which allows local users to gain SYSTEM privileges by modifying tmlisten.exe.
EPSS
Процентиль: 59%
0.00384
Низкий
10 Critical
CVSS2
Дефекты
NVD-CWE-Other