Описание
Format string vulnerability in the ActiveX control (ATXCONSOLE.OCX) in TrendMicro OfficeScan Corporate Edition (OSCE) before 7.3 Patch 1 allows remote attackers to execute arbitrary code via format string identifiers in the "Management Console's Remote Client Install name search".
Ссылки
- PatchVendor Advisory
- Patch
- US Government Resource
- Patch
- Patch
- PatchVendor Advisory
- Patch
- US Government Resource
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:trend_micro:officescan:corporate_7.3:*:*:*:*:*:*:*
EPSS
Процентиль: 93%
0.06264
Низкий
5.1 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 4 лет назад
Format string vulnerability in the ActiveX control (ATXCONSOLE.OCX) in TrendMicro OfficeScan Corporate Edition (OSCE) before 7.3 Patch 1 allows remote attackers to execute arbitrary code via format string identifiers in the "Management Console's Remote Client Install name search".
EPSS
Процентиль: 93%
0.06264
Низкий
5.1 Medium
CVSS2
Дефекты
NVD-CWE-Other