Exploitation Summary
EIP tracks 1 public exploit for CVE-2017-14085. PoCs published by hyp3rlinx.
AI-analyzed exploit summary This exploit demonstrates unauthorized NT domain and PHP information disclosure in TrendMicro OfficeScan XG. It leverages unauthenticated HTTP requests to expose sensitive system details via vulnerable endpoints.
Description
Information disclosure vulnerabilities in Trend Micro OfficeScan 11.0 and XG may allow unauthenticated users who can access the OfficeScan server to query the network's NT domain or the PHP version and modules.
Exploits (1)
This exploit demonstrates unauthorized NT domain and PHP information disclosure in TrendMicro OfficeScan XG. It leverages unauthenticated HTTP requests to expose sensitive system details via vulnerable endpoints.
References (8)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N