CVE Vulnerabilities

CVE-2003-1341

Published: Dec 31, 2003 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The default installation of Trend Micro OfficeScan 3.0 through 3.54 and 5.x allows remote attackers to bypass authentication from cgiChkMasterPasswd.exe and gain access to the web management console via a direct request to cgiMasterPwd.exe.

Affected Software

NameVendorStart VersionEnd Version
OfficescanTrend_micro3.0 (including)3.0 (including)
OfficescanTrend_micro3.1.1 (including)3.1.1 (including)
OfficescanTrend_micro3.5 (including)3.5 (including)
OfficescanTrend_micro3.11 (including)3.11 (including)
OfficescanTrend_micro3.13 (including)3.13 (including)
OfficescanTrend_micro3.54 (including)3.54 (including)
Virus_busterTrend_micro3.52 (including)3.52 (including)
Virus_busterTrend_micro3.53 (including)3.53 (including)
Virus_busterTrend_micro3.54 (including)3.54 (including)

References