Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 is vulnerable to an XML External Entity Processing (XXE) vulnerability which could allow an authenticated administrator to read arbitrary local files. An attacker must already have obtained product administrator/root privileges to exploit this vulnerability.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: trendmicro
Published: 2020-11-09T23:10:34
Updated: 2024-08-04T16:03:23.261Z
Reserved: 2020-10-12T00:00:00
Link: CVE-2020-27017
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-11-09T23:15:12.147
Modified: 2024-11-21T05:20:41.063
Link: CVE-2020-27017
Redhat
No data.