First published: Fri Apr 28 2017(Updated: )
detected_potential_files.cgi in Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier allows remote authenticated users to execute arbitrary code as the root user via shell metacharacters in the cache_id parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Trend Micro Threat Discovery Appliance | <=2.6.1062 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-8586 is considered a high severity vulnerability due to its potential for remote code execution by authenticated users.
To fix CVE-2016-8586, upgrade to a later version of Trend Micro Threat Discovery Appliance that is not affected by this vulnerability.
Users of Trend Micro Threat Discovery Appliance version 2.6.1062r1 and earlier are affected by CVE-2016-8586.
CVE-2016-8586 allows remote authenticated users to execute arbitrary code on the system as the root user.
The impact of CVE-2016-8586 includes potential system compromise and unauthorized access, as attackers can execute code with root privileges.