Serverprotect
Vendor:
First CVE: May 2, 2005 · Active for 21 years
43
Total CVEs
More Total CVEs than 93% of tracked products
5.4
Avg CVEs / Year
Higher CVE frequency than 86% of tracked products
8.3
Avg CVSS
Higher Avg CVSS than 50% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Serverprotect over time
Volume of CVEsAvg CVSS Base Score
First CVE
May 2, 2005
21 years ago
Most Recent CVE
Feb 24, 2022
1,611 days ago
CVE Severity & Scoring
Serverprotect43 CVEs
26%
63%
12%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local8 (18.6%)
Network10 (23.3%)
Unknown25 (58.1%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low16 (37.2%)
High2 (4.7%)
Unknown25 (58.1%)
User Interaction
None14 (32.6%)
Unknown25 (58.1%)
Required4 (9.3%)
Privileges Required
Low5 (11.6%)
High3 (7.0%)
None10 (23.3%)
Unknown25 (58.1%)
Top CVEs
Signals from CVEs in this product scope (43 CVEs).
43 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-2508HIGH Multiple stack-based buffer overflows in Trend Micro ServerProtect 5.58 before Security Patch 2 Build 1174 allow remote attackers to execute arbitrary code via crafted data to (1) | May 8, 2007 | 10.0 | 84 | NO | YES |
CVE-2007-1070HIGH Multiple stack-based buffer overflows in Trend Micro ServerProtect for Windows and EMC 5.58, and for Network Appliance Filer 5.61 and 5.62, allow remote attackers to execute arbitr | Feb 21, 2007 | 10.0 | 80 | NO | YES |
CVE-2007-6507HIGH SpntSvc.exe daemon in Trend Micro ServerProtect 5.58 for Windows, before Security Patch 4, exposes unspecified dangerous sub-functions from StRpcSrv.dll in the DCE/RPC interface, w | Dec 20, 2007 | 10.0 | 55 | NO | YES |
CVE-2021-36745CRITICAL A vulnerability in Trend Micro ServerProtect for Storage 6.0, ServerProtect for EMC Celerra 5.8, ServerProtect for Network Appliance Filers 5.8, and ServerProtect for Microsoft Win | Sep 29, 2021 | 9.8 | 35 | NO | NO |
CVE-2022-25330CRITICAL Integer overflow conditions that exist in Trend Micro ServerProtect 6.0/5.8 Information Server could allow a remote attacker to crash the process or achieve remote code execution. | Feb 24, 2022 | 9.8 | 33 | NO | NO |
CVE-2022-25329CRITICAL Trend Micro ServerProtect 6.0/5.8 Information Server uses a static credential to perform authentication when a specific command is typed in the console. An unauthenticated remote a | Feb 24, 2022 | 9.8 | 33 | NO | NO |
CVE-2017-9034CRITICAL Trend Micro ServerProtect for Linux 3.0 before CP 1531 allows attackers to write to arbitrary files and consequently execute arbitrary code with root privileges by leveraging failu | May 26, 2017 | 9.8 | 32 | NO | NO |
CVE-2020-24561CRITICAL A command injection vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow an attacker to execute arbitrary code on an affected system. An attacker must first obtain | Sep 15, 2020 | 9.1 | 31 | NO | NO |
CVE-2008-0013HIGH Heap-based buffer overflow in an unspecified procedure in Trend Micro ServerProtect 5.7 and 5.58 allows remote attackers to execute arbitrary code via unknown vectors, possibly rel | Nov 17, 2008 | 10.0 | 31 | NO | NO |
CVE-2008-0014HIGH Heap-based buffer overflow in an unspecified procedure in Trend Micro ServerProtect 5.7 and 5.58 allows remote attackers to execute arbitrary code via unknown vectors, possibly rel | Nov 17, 2008 | 10.0 | 30 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (43 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
3 CVEs
7.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
4.7% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (43 CVEs).
Media Mentions
Signals from CVEs in this product scope (43 CVEs).
Top CNAs Publishing CVEs For Serverprotect
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| windows | 1 | 9.3 | 8.3% | 0 | 0 |
| novell_netware | 1 | 9.3 | 8.3% | 0 | 0 |
| linux_1.2.0 | 1 | 9.3 | 8.3% | 0 | 0 |
| linux | 1 | 9.3 | 8.3% | 0 | 0 |
| 6.0 | 3 | 7.8 | 4.0% | 0 | 0 |
| 5.8 | 7 | 8.4 | 3.9% | 0 | 0 |
| 5.7 | 8 | 10.0 | 7.6% | 0 | 0 |
| 5.62 | 1 | 10.0 | 71.9% | 0 | 1 |
| 5.61 | 1 | 10.0 | 71.9% | 0 | 1 |
| 5.58_security_patch_3 | 1 | 10.0 | 36.6% | 0 | 1 |
| 5.5.8 | 1 | 9.3 | 8.3% | 0 | 0 |
| 5.58 | 18 | 9.3 | 13.2% | 0 | 1 |
| 5.3.1 | 2 | 8.4 | 6.3% | 0 | 0 |
| 3.0 | 11 | 7.1 | 2.2% | 0 | 0 |
| 2.5 | 2 | 7.5 | 3.4% | 0 | 0 |
| 1.3 | 2 | 7.5 | 3.4% | 0 | 0 |
| 1.25_2007-02-16 | 3 | 6.3 | 2.5% | 0 | 0 |