CNCVE编号:CNCVE-20010133 CVE编号:CAN-2001-0133 安全级别:高 漏洞中文描述: Interscan VirusWall 3.6.x及其早期产品中的WEB管理接口没有使用加密,这将导致远程攻击者可以通过目标机上的setpasswd.cgi程序或其它HTTP程序来获得管理员口令。 漏洞英文描述: The web administration interface for Interscan VirusWall 3.6.x and earlier does not use encryption, which could allow remote attackers too btain the administrator password to sniff the administrator password via the setpasswd.cgi program or other HTTP programs. 漏洞参考: BID:2212 BUGTRAQ:20010114 Trend Micro's VirusWall: Multiple vunerabilities 系统类型:其他 漏洞类型:权限有效性检查错误