PT-2007-2109 · Microworld Technologies · Escan

Publicado

2007-05-02

·

Atualizado

2017-07-29

·

CVE-2007-0655

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions MicroWorld Technologies eScan version 8.0.671.1
Description The issue allows remote or local attackers to gain privileges and execute arbitrary commands by connecting directly to TCP port 2222. This is due to a problem in the MicroWorld Agent service (MWAGENT.EXE).
Recommendations For version 8.0.671.1, consider restricting access to TCP port 2222 to minimize the risk of exploitation. As a temporary workaround, limit the functionality of the MicroWorld Agent service until a patch is available.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2007-0655

Produtos afetados

Escan