A weak session token authentication bypass vulnerability in Trend Micro IM Security 1.6 and 1.6.5 could allow an remote attacker to guess currently logged-in administrators' session session token in order to gain access to the product's web management interface.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: trendmicro

Published: 2021-05-10T11:00:31

Updated: 2024-08-03T23:03:33.527Z

Reserved: 2021-04-20T00:00:00

Link: CVE-2021-31520

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-05-10T11:15:08.003

Modified: 2021-05-19T18:25:09.457

Link: CVE-2021-31520

cve-icon Redhat

No data.