Published:2004/09/03  Last Updated:2008/05/21

JVN#FF73142E
Virus Buster Corporate Edition vulnerability

Overview

Virus Buster Corporate Edition contains a vulnerability which may allow an attacker to view the OPP.ini file (Outbreak Prevent Policy configuration file), when a specific URL is entered to the management console.

Products Affected

  • Virus Buster Corporate Edition 5.58

Description

Impact

An attacker could distrubute viruses that sneak through the policy by illegally obtaining configuration information.

Solution

Vendor Status

Vendor Status Last Update Vendor Notes
Trend Micro Incorporated Vulnerable 2004/09/03

References

JPCERT/CC Addendum

Credit

Yuu Arai of LAC Co., Ltd. reported this vulnerability to IPA.
JPCERT/CC coordinated with the vendors under Information Security Early Warning Partnership.

Other Information

JPCERT Alert
JPCERT Reports
CERT Advisory
CPNI Advisory
TRnotes
CVE
JVN iPedia JVNDB-2004-000586

Update History