The web interface in Trend Micro ServerProtect for Linux (SPLX) 1.25, 1.3, and 2.5 before 20070216 accepts logon requests through unencrypted HTTP, which might allow remote attackers to obtain credentials by sniffing the network.
References
Link | Resource |
---|---|
http://www.trendmicro.com/download/product.asp?productid=20 | Patch |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2007-03-02 21:18
Updated : 2008-09-05 21:19
NVD link : CVE-2007-1169
Mitre link : CVE-2007-1169
CVE.ORG link : CVE-2007-1169
JSON object : View
Products Affected
trend_micro
- serverprotect
CWE