A command injection vulnerability in AddVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary OS commands with elevated privileges.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: trendmicro
Published: 2020-11-18T18:45:40
Updated: 2024-08-04T16:40:59.935Z
Reserved: 2020-11-13T00:00:00
Link: CVE-2020-28580
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-11-18T19:15:11.960
Modified: 2024-11-21T05:22:56.700
Link: CVE-2020-28580
Redhat
No data.