Описание
Format string vulnerability in the ActiveX control (ATXCONSOLE.OCX) in TrendMicro OfficeScan Corporate Edition (OSCE) before 7.3 Patch 1 allows remote attackers to execute arbitrary code via format string identifiers in the "Management Console's Remote Client Install name search".
Ссылки
- PatchVendor Advisory
- Patch
- US Government Resource
- Patch
- Patch
- PatchVendor Advisory
- Patch
- US Government Resource
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:trend_micro:officescan:corporate_7.3:*:*:*:*:*:*:*
EPSS
Процентиль: 95%
0.19033
Средний
5.1 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Format string vulnerability in the ActiveX control (ATXCONSOLE.OCX) in TrendMicro OfficeScan Corporate Edition (OSCE) before 7.3 Patch 1 allows remote attackers to execute arbitrary code via format string identifiers in the "Management Console's Remote Client Install name search".
EPSS
Процентиль: 95%
0.19033
Средний
5.1 Medium
CVSS2
Дефекты
NVD-CWE-Other