<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>System7 &#187; exploit</title>
	<atom:link href="http://www.system7.org/tag/exploit/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.system7.org</link>
	<description>Spread the word, information is free.</description>
	<lastBuildDate>Mon, 16 Jan 2012 13:24:39 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Trend Officescan &#8211; Proof of concept</title>
		<link>http://www.system7.org/2009/06/06/trend-officescan-proof-of-concept/</link>
		<comments>http://www.system7.org/2009/06/06/trend-officescan-proof-of-concept/#comments</comments>
		<pubDate>Sat, 06 Jun 2009 19:19:29 +0000</pubDate>
		<dc:creator>.</dc:creator>
				<category><![CDATA[hardware & software]]></category>
		<category><![CDATA[anti-virus]]></category>
		<category><![CDATA[avg]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[trend]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.system7.org/?p=206</guid>
		<description><![CDATA[In April a Trend vulnerability was discovered.  The Trend real time scan service can be exploited by running a scan on a long directory name.  It&#8217;s surprising that this vulnerability was discovered and yet is still exploitable in the latest &#8230; <a href="http://www.system7.org/2009/06/06/trend-officescan-proof-of-concept/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p>In April a <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-1435">Trend vulnerability</a> was discovered.  The Trend real time scan service can be exploited by running a scan on a long directory name.  It&#8217;s surprising that this vulnerability was discovered and yet is still exploitable in the latest release of Trend &#8212; which I&#8217;ve confirmed today.  What&#8217;s neat is someone who only has user level privilege on a machine would be able to halt the Trend service and then potentially run some nasty code.</p>
<p>Here&#8217;s a VB project that will generate a long directory name and then attempt to run the scan: <a href="http://www.system7.org/wp-content/uploads/2009/06/office-scan.zip">Trend POC</a> (I&#8217;ve also compiled the source for those who don&#8217;t have VB &#8212; rename the .exe_ to .exe)</p>
<p>I&#8217;m running <a href="http://free.avg.com">AVG Free</a> on my Windows machine and happy with that.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.system7.org/2009/06/06/trend-officescan-proof-of-concept/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

