Description
Multiple buffer overflows in Trend Micro ServerProtect 5.58 before Security Patch 2- Build 1174 allow remote attackers to execute arbitrary code via a crafted RPC message processed by the (1) the RPCFN_ActiveRollback function in (a) stcommon.dll, or the (2) ENG_SetRealTimeScanConfigInfo or (3) ENG_SendEmail functions in (b) eng50.dll.
Affected products
- Trend Micro / serverprotect5.58 – 5.58
References
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2007/1689
- MISChttp://osvdb.org/35792
- MISChttp://osvdb.org/35791
- MISChttp://www.trendmicro.com/ftp/documentation/readme/spnt_558_win_en_securitypatch2_readme.txt
- MISChttp://www.trendmicro.com/download_beta/product.asp?productid=17
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/34171