Trend Micro Virus Control System (TVCS) 1.8 running with IIS allows remote attackers to cause a denial of service (memory consumption) in IIS via multiple URL requests for ActiveSupport.exe.
📦
virus_control_system
Vendor: trend_micro
Actively Exploited
0
CISA KEV List
PoC / Exploits
2
Code Available
Total RCEs
0
Remote Access
Total CVEs
3
Total Indexed
Avg. EPSS
4.21%
Exploit Prob.
Security Vulnerability Index
Page 1 / 1
5.0
CVSS
CVE-2003-1342
Exploit Found
Severity: MEDIUM
5.0
CVSS
CVE-2003-1344
Exploit Found
Trend Micro Virus Control System (TVCS) Log Collector allows remote attackers to obtain usernames, encrypted passwords, and other sensitive information via a URL request for getservers.exe with the action parameter set to "selects1", which returns log files.
Severity: MEDIUM
7.5
CVSS
Vulnerability in TrendMicro Virus Control System 1.8 allows a remote attacker to view configuration files and change the configuration via a certain CGI program.
Severity: HIGH