Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-3865

Опубликовано: 21 янв. 2009
Источник: nvd
CVSS2: 10
EPSS Средний

Описание

Multiple heap-based buffer overflows in the ApiThread function in the firewall service (aka TmPfw.exe) in Trend Micro Network Security Component (NSC) modules, as used in Trend Micro OfficeScan 8.0 SP1 Patch 1 and Internet Security 2007 and 2008 17.0.1224, allow remote attackers to execute arbitrary code via a packet with a small value in an unspecified size field.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:trend_micro:internet_security_2007:*:*:*:*:*:*:*:*
cpe:2.3:a:trend_micro:internet_security_2008:17.0.1224:*:*:*:*:*:*:*
cpe:2.3:a:trend_micro:officescan:8.0:sp1:*:*:*:*:*:*

EPSS

Процентиль: 96%
0.29345
Средний

10 Critical

CVSS2

Дефекты

CWE-119

Связанные уязвимости

github
почти 4 года назад

Multiple heap-based buffer overflows in the ApiThread function in the firewall service (aka TmPfw.exe) in Trend Micro Network Security Component (NSC) modules, as used in Trend Micro OfficeScan 8.0 SP1 Patch 1 and Internet Security 2007 and 2008 17.0.1224, allow remote attackers to execute arbitrary code via a packet with a small value in an unspecified size field.

EPSS

Процентиль: 96%
0.29345
Средний

10 Critical

CVSS2

Дефекты

CWE-119