HomeTrend MicroCVE-2007-6386

CVE-2007-6386

UNKNOWN
7.2CVSS
Published: 2007-12-15
Updated: 2025-04-09
AI Analysis

Description

Stack-based buffer overflow in PccScan.dll before build 1451 in Trend Micro AntiVirus plus AntiSpyware 2008, Internet Security 2008, and Internet Security Pro 2008 allows user-assisted remote attackers to cause a denial of service (SfCtlCom.exe crash), and allows local users to gain privileges, via a malformed .zip archive with a long name, as demonstrated by a .zip file created via format string specifiers in a crafted .uue file.

CVSS Metrics

Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Access Vector
local
Access Cmplx
low
Auth
none
Confidentiality
complete
Integrity
complete
Availability
complete
Weaknesses
CWE-119

Metadata

Primary Vendor
TREND_MICRO
Published
12/15/2007
Last Modified
4/9/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

trend_micro : trend_micro_antivirus_plus_antispywaretrend_micro : trend_micro_internet_security__virus_busttrend_micro : trend_micro_internet_security_pro

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2007-6386 | UNKNOWN Severity | CVEDatabase.com | CVEDatabase.com