Trend Micro OfficeScan objRemoveCtrl ActiveX buffer overflow
Added: 08/11/2008CVE: CVE-2008-3364
BID: 30407
OSVDB: 47213
Background
Trend Micro OfficeScan is a centralized virus and security scan management system.Problem
A buffer overflow in the objRemoveCtrl ActiveX control, which is automatically installed when OfficeScan is installed through the server web console, allows command execution when invoked with a long, specially crafted Server property.Resolution
Apply a security patch from Trend Micro.References
http://www.frsirt.com/english/advisories/2008/2220/referencesLimitations
Exploit works on the ActiveX control which comes with Trend Micro OfficeScan 7.3.The vulnerable ActiveX component is installed by accessing the following URL: http://<OfficeScan Server>:8080/
Platforms
WindowsBack to exploit index