iDefense Security Advisory 02.16.07 – TrendMicro’s ServerProtect product uses a web interface which runs on port TCP 14942 to configure the product. This interface is protected with a user configurable password. Upon successful login, a cookie is set with the name ‘splx_2376_info’ and a valid session id as its value. The ServerProtect web application suffers from a design error vulnerability in its authorization checking routines. Attackers can gain full access to the web application by requesting any internal page while supplying their own ‘splx_2376_info’ cookie with an arbitrary value. iDefense has confirmed this vulnerability in Trend ServerProtect v1.3 for Linux. This vulnerability is not present in the Windows based versions of Server protect.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/54627/02.16.07-1.txt
Source: https://packetstormsecurity.com/files/54627/iDEFENSE-Security-Advisory-2007-02-16.1.html