PT-2007-2109 · Microworld Technologies · Escan
Publicado
2007-05-02
·
Atualizado
2017-07-29
·
CVE-2007-0655
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
MicroWorld Technologies eScan version 8.0.671.1
Description
The issue allows remote or local attackers to gain privileges and execute arbitrary commands by connecting directly to TCP port 2222. This is due to a problem in the MicroWorld Agent service (MWAGENT.EXE).
Recommendations
For version 8.0.671.1, consider restricting access to TCP port 2222 to minimize the risk of exploitation. As a temporary workaround, limit the functionality of the MicroWorld Agent service until a patch is available.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Escan