CVE-2004-1003

Trend Micro ScanMail Domino - Information Disclosure and Anti-Virus Bypass via smency.nsf

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2004-1003. PoCs published by DokFLeed.

AI-analyzed exploit summary This script checks for the presence of sensitive files used by Trend ScanMail for Domino by attempting to read them via HTTP. It identifies if these files are accessible, which could lead to information disclosure or disabling antivirus protection.

Description

Trend ScanMail allows remote attackers to obtain potentially sensitive information or disable the anti-virus capability via the smency.nsf file.

Exploits (1)

exploitdb SCANNER VERIFIED
by DokFLeed · phpremotemultiple
https://www.exploit-db.com/exploits/24725

This script checks for the presence of sensitive files used by Trend ScanMail for Domino by attempting to read them via HTTP. It identifies if these files are accessible, which could lead to information disclosure or disabling antivirus protection.

Classification
Scanner 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: Trend ScanMail for Domino (all versions)
No auth needed
Prerequisites: Network access to the target server · HTTP service running on port 80
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/17962
Various Sources x_refsource_misc
http://cgi.nessus.org/plugins/dump.php3?id=14312

Scores

EPSS 0.0521
EPSS Percentile 91.4%

Details

Status published
Products (2)
trend_micro/scanmail_domino 2.6
trend_micro/scanmail_domino 2.51
Published Mar 01, 2005
Tracked Since Feb 18, 2026