SpntSvc.exe daemon in Trend Micro ServerProtect 5.58 for Windows, before Security Patch 4, exposes unspecified dangerous sub-functions from StRpcSrv.dll in the DCE/RPC interface, which allows remote attackers to obtain full file system access and execute arbitrary code.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Serverprotect | Trend_micro | 5.58_security_patch_3 (including) | 5.58_security_patch_3 (including) |