RSS   Vulnerabilities for 'Internet security 2008'   RSS

2009-01-21
 
CVE-2008-3866

CWE-287
 

 
The Trend Micro Personal Firewall service (aka TmPfw.exe) in Trend Micro Network Security Component (NSC) modules, as used in Trend Micro OfficeScan 8.0 SP1 Patch 1 and Internet Security 2007 and 2008 17.0.1224, relies on client-side password protection implemented in the configuration GUI, which allows local users to bypass intended access restrictions and change firewall settings by using a modified client to send crafted packets.

 
 
CVE-2008-3865

CWE-119
 

 
Multiple heap-based buffer overflows in the ApiThread function in the firewall service (aka TmPfw.exe) in Trend Micro Network Security Component (NSC) modules, as used in Trend Micro OfficeScan 8.0 SP1 Patch 1 and Internet Security 2007 and 2008 17.0.1224, allow remote attackers to execute arbitrary code via a packet with a small value in an unspecified size field.

 
 
CVE-2008-3864

CWE-20
 

 
The ApiThread function in the firewall service (aka TmPfw.exe) in Trend Micro Network Security Component (NSC) modules, as used in Trend Micro OfficeScan 8.0 SP1 Patch 1 and Internet Security 2007 and 2008 17.0.1224, allows remote attackers to cause a denial of service (service crash) via a packet with a large value in an unspecified size field.

 

 >>> Vendor: Trend micro 67 Products
Interscan viruswall
Pc-cillin
Officescan
Virus buster 2001
Scanmail exchange
Interscan webmanager
Virus control system
Interscan emanager
Interscan applettrap
Virus buster
Interscan viruswall for windows nt
Damage cleanup server
Housecall
Scanmail
Scanmail domino
Control manager
Client-server-messaging suite smb
Client-server suite smb
Interscan messaging security suite
Interscan web security suite
Interscan webprotect
Portalprotect
Scanmail emanager
Serverprotect
Serverprotect earthagent
Pc-cillin 2005
Pc-cillin 2006
Officescan corporate edition
Pc cillin - internet security 2006
Client-server-messaging security
Viruswall
Interscan viruswall scan engine
Pc-cillin internet security
Scanning engine
Web security suite
Webprotect
Damage cleanup services
Tmcomm.sys
Trend micro antirootkit common module
Trend micro antispyware
Trend micro antivirus
Vsapini.sys
Antispyware
Pc-cillin internet security 2007
Scan engine
Trend micro antivirus plus antispyware
Trend micro internet security virus bust
Trend micro internet security pro
Client server messaging suite
Worry free business security
Internet security 2007
Internet security 2008
Interscan web security virtual appliance
Interscan messaging security virtual appliance
Deep discovery inspector
Password manager
Email encryption gateway
Mobile security
Business security
Business security services
Office scan
Virtual mobile infrastructure
Smart protection server
Endpoint sensor
Deep security
Security
Worry-free business security


Copyright 2019, cxsecurity.com

 

Back to Top