CVE-2017-14085

medium

Description

Information disclosure vulnerabilities in Trend Micro OfficeScan 11.0 and XG may allow unauthenticated users who can access the OfficeScan server to query the network's NT domain or the PHP version and modules.

References

https://success.trendmicro.com/solution/1118372

http://www.securitytracker.com/id/1039500

http://www.securityfocus.com/bid/101076

http://www.securityfocus.com/archive/1/541281/100/0/threaded

http://seclists.org/fulldisclosure/2017/Sep/85

Details

Source: Mitre, NVD

Published: 2017-10-06

Updated: 2024-11-21

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

Severity: Medium

CVSS v3

Base Score: 5.3

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Severity: Medium