CVE-2007-0602

Trend Micro VirusWall 3.81 - Local Privilege Escalation via Long Command Line Argument

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2007-0602. PoCs published by Sebastian Wolfgarten.

AI-analyzed exploit summary This exploit leverages a buffer overflow in the `vscan` binary (part of Trend Micro VirusWall 3.81) to achieve local privilege escalation. The vulnerable binary is SUID root, and the exploit overwrites the return address to execute shellcode, granting a root shell.

Description

Buffer overflow in libvsapi.so in the VSAPI library in Trend Micro VirusWall 3.81 for Linux, as used by IScan.BASE/vscan, allows local users to gain privileges via a long command line argument, a different vulnerability than CVE-2005-0533.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Sebastian Wolfgarten · clocallinux
https://www.exploit-db.com/exploits/3213

This exploit leverages a buffer overflow in the `vscan` binary (part of Trend Micro VirusWall 3.81) to achieve local privilege escalation. The vulnerable binary is SUID root, and the exploit overwrites the return address to execute shellcode, granting a root shell.

Classification
Working Poc 100%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: Trend Micro VirusWall 3.81 (vscan with libvsapi.so)
Auth required
Prerequisites: Access to a system with Trend Micro VirusWall 3.81 installed · Membership in the 'iscan' group or root access to make vscan executable
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (8)

Core 8
Core References
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/2204
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1017562
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/0367
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/458111/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/33043

Scores

EPSS 0.0088
EPSS Percentile 54.3%

Details

Status published
Products (1)
trend_micro/viruswall 3.81
Published Jan 30, 2007
Tracked Since Feb 18, 2026