← Vulnerability feed

Vulnerability record · CVE-2007-0851 · published 8 February 2007

CVE-2007-0851: Trend micro client-server-messaging suite smb vulnerability

Trend Micro · Client Server Messaging Suite Smb

Buffer overflow in the Trend Micro Scan Engine 8.000 and 8.300 before virus pattern file 4.245.00, as used in other products such as Cyber Clean Center (CCC) Cleaner, allows remote attackers to execute arbitrary code via a malformed UPX compressed executable.

9.3 CVSS 2.0 High EPSS 8.4% · top 5.2%
9.3CVSS 2.0 base score
8.4%EPSS exploitation probability, 30 days
NoNot in CISA KEV
23Affected product versions listed by NVD
30References
16 Jun 2026Last modified by NVD

Description

Buffer overflow in the Trend Micro Scan Engine 8.000 and 8.300 before virus pattern file 4.245.00, as used in other products such as Cyber Clean Center (CCC) Cleaner, allows remote attackers to execute arbitrary code via a malformed UPX compressed executable.

AV:N/AC:M/Au:N/C:C/I:C/A:C

Affected products

23 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://esupport.trendmicro.com/support/viewxml.do?ContentID=EN-1034289 PatchVendor Advisory
http://jvn.jp/jp/JVN%2377366274/index.html
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=470 PatchVendor Advisory
http://osvdb.org/33038
http://secunia.com/advisories/24087 PatchVendor Advisory
http://secunia.com/advisories/24128
http://securitytracker.com/id?1017601 PatchVendor Advisory
http://securitytracker.com/id?1017602
http://securitytracker.com/id?1017603
http://www.jpcert.or.jp/at/2007/at070004.txt
http://www.kb.cert.org/vuls/id/276432 US Government Resource
http://www.securityfocus.com/bid/22449 PatchVendor Advisory
http://www.vupen.com/english/advisories/2007/0522
http://www.vupen.com/english/advisories/2007/0569
https://exchange.xforce.ibmcloud.com/vulnerabilities/32352
http://esupport.trendmicro.com/support/viewxml.do?ContentID=EN-1034289 PatchVendor Advisory
http://jvn.jp/jp/JVN%2377366274/index.html
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=470 PatchVendor Advisory
http://osvdb.org/33038
http://secunia.com/advisories/24087 PatchVendor Advisory
http://secunia.com/advisories/24128
http://securitytracker.com/id?1017601 PatchVendor Advisory
http://securitytracker.com/id?1017602
http://securitytracker.com/id?1017603
http://www.jpcert.or.jp/at/2007/at070004.txt
http://www.kb.cert.org/vuls/id/276432 US Government Resource
http://www.securityfocus.com/bid/22449 PatchVendor Advisory
http://www.vupen.com/english/advisories/2007/0522
http://www.vupen.com/english/advisories/2007/0569
https://exchange.xforce.ibmcloud.com/vulnerabilities/32352

Track CVE-2007-0851 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2011-5001Trend Micro Control Manager IPC packet stack buffer overflowCVE-2011-5001 is a stack-based buffer overflow in the CGenericScheduler::AddTask function of cmdHandlerRedAlertController.dll, loaded by CmdProcessor…EPSS 64%analysed7.5CVE-2012-2998Trend micro control manager sql injection vulnerabilitySQL injection vulnerability in the ad hoc query module in Trend Micro Control Manager (TMCM) before 5.5.0.1823 and 6.0 before 6.0.0.1449 allows remot…EPSS 6.1%7.5CVE-2005-0533Trend micro client-server-messaging suite smb vulnerabilityHeap-based buffer overflow in Trend Micro AntiVirus Library VSAPI before 7.510, as used in multiple Trend Micro products, allows remote attackers to …EPSS 4.4%7.5CVE-2005-0383Trend micro control manager vulnerabilityTrend Micro Control Manager 3.0 Enterprise Edition allows remote attackers to gain privileges via a replay attack of the encrypted username and passw…EPSS 1.7%7.5CVE-2001-0958Trend micro interscan emanager vulnerabilityBuffer overflows in eManager plugin for Trend Micro InterScan VirusWall for NT 3.51 and 3.51J allow remote attackers to execute arbitrary code via lo…EPSS 5.0%5.1CVE-2006-0642Trend micro interscan messaging security suite vulnerabilityTrend Micro ServerProtect 5.58, and possibly InterScan Messaging Security Suite and InterScan Web Security Suite, have a default configuration settin…EPSS 1.9%4.3CVE-2006-3261Trend micro control manager vulnerabilityCross-site scripting (XSS) vulnerability in Trend Micro Control Manager (TMCM) 3.5 allows remote attackers to inject arbitrary web script or HTML via…EPSS 1.3%

Source: NIST National Vulnerability Database (record CVE-2007-0851), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.