A command injection vulnerability in AddVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary OS commands with elevated privileges.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: trendmicro

Published: 2020-11-18T18:45:40

Updated: 2024-08-04T16:40:59.935Z

Reserved: 2020-11-13T00:00:00

Link: CVE-2020-28580

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-11-18T19:15:11.960

Modified: 2020-11-28T21:58:23.557

Link: CVE-2020-28580

cve-icon Redhat

No data.