admin_sys_time.cgi in Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier allows remote authenticated users to execute arbitrary code as the root user via shell metacharacters in the timezone parameter.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2017-04-28T19:00:00

Updated: 2024-08-06T02:27:41.049Z

Reserved: 2016-10-10T00:00:00

Link: CVE-2016-8585

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2017-04-28T19:59:00.203

Modified: 2017-05-11T01:29:00.850

Link: CVE-2016-8585

cve-icon Redhat

No data.