Trend Micro OfficeScan DoS Vulnerabilities...

- AV AC AU C I A
发布: 2000-02-26
修订: 2025-04-13

Trend Micro OfficeScan is an antivirus software program which is deployable across an entire network. During the installation of the management software, the administrator is asked to choose between managing from a webserver or from a fileserver. If the webserver option is chosen, clients running OfficeScan are configured to listen to port 12345 in order to receive periodical database engine updates and other administrative commands from the OfficeScan manager. There are several ways for an attacker to cause various denial of service conditions. Sending random data to port 12345 can cause tmlisten.exe to either consume 100% of the CPU cycles or cause a Visual C++ error and crash the machine. Furthermore, opening over 5 simultaneous connections to port 12345 while sending random data will cause the service to stop responding to requests. The service will have to be stopped and restarted on each client machine. It has also been reported that it is possible to cause a denial of...

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息