Vulnerabilities
Vulnerable Software
A command execution flaw on the Trend Micro Threat Discovery Appliance 2.6.1062r1 exists with the timezone parameter in the admin_sys_time.cgi interface.
CVSS Score
9.8
EPSS Score
0.885
Published
2017-04-12
On the Trend Micro Threat Discovery Appliance 2.6.1062r1, directory traversal when processing a session_id cookie allows a remote, unauthenticated attacker to delete arbitrary files as root. This can be used to bypass authentication or cause a DoS.
CVSS Score
9.8
EPSS Score
0.93
Published
2017-04-12


Contact Us

Shodan ® - All rights reserved