Back to Database
Status published
High
CVE-2004-2430
Trend OfficeScan Corporate Edition 5.58 and possibly earler does not...
Vulnerability Description
Trend OfficeScan Corporate Edition 5.58 and possibly earler does not drop privileges when opening a help window from a virus detection pop-up window, which allows local users to gain SYSTEM privileges.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2004-2430
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.osvdb.org/6840
- http://www.securityfocus.com/bid/10503
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16375
- http://archives.neohapsis.com/archives/bugtraq/2004-06/0117.html
- http://secunia.com/advisories/11806
- http://uk.trendmicro-europe.com/enterprise/support/knowledge_base_detail.php?solutionId=20118
More from trend micro
View All →CVE-2016-5840
hotfix_upload.cgi in Trend Micro Deep Discovery Inspector (DDI) 3.7, 3.8...
High
7.2
CVE-2016-3664
Trend Micro Mobile Security for iOS before 3.2.1188 does not...
High
7.4
CVE-2015-3326
Trend Micro ScanMail for Microsoft Exchange (SMEX) 10.2 before Hot...
Medium
5
CVE-2012-2998
SQL injection vulnerability in the ad hoc query module in...
High
7.5
CVE-2011-5001
Stack-based buffer overflow in the CGenericScheduler::AddTask function in cmdHandlerRedAlertController.dll in...
Critical
10
Affected Vendor
trend micro
View all reports →Affected Software
officescan
Vulnerable Versions:
3.0, corporate_3.5, corporate_3.11, corporate_3.13, corporate_3.54, corporate_5.02, corporate_5.5, corporate_5.58
Timeline
Official Publish:
August 18th, 2005
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.