First published: Fri Sep 22 2017(Updated: )
Command injection vulnerability in Trend Micro Smart Protection Server (Standalone) 3.1 and 3.2 server administration UI allows attackers with authenticated access to execute arbitrary code on vulnerable installations.
Credit: security@trendmicro.com
Affected Software | Affected Version | How to fix |
---|---|---|
Trend Micro Smart Protection Server | =3.1 | |
Trend Micro Smart Protection Server | =3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-11395 is considered a critical severity vulnerability due to its potential for remote code execution.
To fix CVE-2017-11395, update Trend Micro Smart Protection Server to a patched version that addresses this vulnerability.
CVE-2017-11395 affects users of Trend Micro Smart Protection Server versions 3.1 and 3.2.
CVE-2017-11395 is a command injection vulnerability that allows attackers to execute arbitrary code.
The impact of CVE-2017-11395 could result in unauthorized access to system functions and the execution of malicious commands.