First published: Fri Jan 19 2018(Updated: )
A vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an attacker to perform remote command execution via a cron job injection on a vulnerable system.
Credit: security@trendmicro.com
Affected Software | Affected Version | How to fix |
---|---|---|
Trend Micro Smart Protection Server | <=3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14094 is rated as a critical vulnerability due to its potential for remote command execution.
To remediate CVE-2017-14094, upgrade Trend Micro Smart Protection Server to version 3.3 or later.
CVE-2017-14094 affects Trend Micro Smart Protection Server versions 3.2 and below.
CVE-2017-14094 allows attackers to perform remote command execution via cron job injection.
Organizations using Trend Micro Smart Protection Server versions 3.2 and below are at risk from CVE-2017-14094.