Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.53 allows remote attackers to access sensitive information from the hotdownload directory without authentication, such as the ofcscan.ini configuration file, which contains a weakly encrypted password.
Advisories
Source ID Title
EUVD EUVD EUVD-2001-1132 Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.53 allows remote attackers to access sensitive information from the hotdownload directory without authentication, such as the ofcscan.ini configuration file, which contains a weakly encrypted password.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-08T04:44:08.135Z

Reserved: 2002-03-15T00:00:00

Link: CVE-2001-1151

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2001-10-15T04:00:00.000

Modified: 2025-04-03T01:03:51.193

Link: CVE-2001-1151

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.