CVE-2008-4403

Severity CVSS v4.0:
Pending analysis
Type:
CWE-399 Resource Management Errors
Publication date:
03/10/2008
Last modified:
09/04/2025

Description

The CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 allow remote attackers to cause a denial of service (NULL pointer dereference and child process crash) via crafted HTTP headers, related to the "error handling mechanism."

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:trend_micro:officescan:8.0:sp1:*:*:*:*:*:*
cpe:2.3:a:trend_micro:officescan:8.0:sp1_patch1:*:*:*:*:*:*