← Back

Officescan

officescan

Vendor: Trend Micro • 29 CVEs

CVEs (29)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Trend Micro
1Officescan
Apr 16, 2026
Dec 31, 2004
N/A· v4
N/A· v3
7.2 HIGH· v2
Trend OfficeScan Corporate Edition 5.58 and possibly earler does not drop privileges when opening a help window from a virus detection pop-up window, which allows local users to gain SYSTEM privileges.
1Trend Micro
1Officescan
Apr 16, 2026
May 7, 2004
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Trend Micro OfficeScan 3.0 - 6.0 has default permissions of "Everyone Full Control" on the installation directory and registry keys, which allows local users to disable virus protection.
1Trend Micro
2Officescan
Virus Buster
Apr 16, 2026
Dec 31, 2003
N/A· v4
N/A· v3
7.5 HIGH· v2
The default installation of Trend Micro OfficeScan 3.0 through 3.54 and 5.x allows remote attackers to bypass authentication from cgiChkMasterPasswd.exe and gain access to the web management console via a direct request...Show more
The default installation of Trend Micro OfficeScan 3.0 through 3.54 and 5.x allows remote attackers to bypass authentication from cgiChkMasterPasswd.exe and gain access to the web management console via a direct request to cgiMasterPwd.exe.Show less
1Trend Micro
2Officescan
Pc Cillin
Apr 16, 2026
Dec 18, 2002
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Buffer overflow in pop3trap.exe for PC-cillin 2000, 2002, and 2003 allows local users to execute arbitrary code via a long input string to TCP port 110 (POP3).
1Trend Micro
2Officescan
Virus Buster
Apr 16, 2026
Oct 15, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.53 allows remote attackers to access sensitive information from the hotdownload directory without authentication, such as the ofcscan.ini configuration file,...Show more
Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.53 allows remote attackers to access sensitive information from the hotdownload directory without authentication, such as the ofcscan.ini configuration file, which contains a weakly encrypted password.Show less
1Trend Micro
2Officescan
Virus Buster
Apr 16, 2026
Aug 22, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Vulnerability in cgiWebupdate.exe in Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.5.2 through 3.5.4 allows remote attackers to read arbitrary files.
1Trend Micro
1Officescan
Apr 16, 2026
Mar 3, 2000
N/A· v4
N/A· v3
6.4 MEDIUM· v2
Trend Micro OfficeScan allows remote attackers to replay administrative commands and modify the configuration of OfficeScan clients.
1Trend Micro
1Officescan
Apr 16, 2026
Feb 28, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The Trend Micro OfficeScan client allows remote attackers to cause a denial of service by making 5 connections to port 12345, which raises CPU utilization to 100%.
1Trend Micro
1Officescan
Apr 16, 2026
Feb 28, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The Trend Micro OfficeScan client tmlisten.exe allows remote attackers to cause a denial of service via malformed data to port 12345.