Vulnerability Details CVE-2020-24561
A command injection vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow an attacker to execute arbitrary code on an affected system. An attacker must first obtain admin/root privileges on the SPLX console to exploit this vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.024
EPSS Ranking 84.0%
CVSS Severity
CVSS v3 Score 9.1
CVSS v2 Score 9.0
Products affected by CVE-2020-24561
-
cpe:2.3:a:trendmicro:serverprotect:3.0