First published: Wed Nov 18 2020(Updated: )
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send a specially crafted HTTP message and achieve remote code execution with elevated privileges.
Credit: security@trendmicro.com
Affected Software | Affected Version | How to fix |
---|---|---|
Trendmicro Interscan Web Security Virtual Appliance | =6.5-sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2020-28579.
The severity rating of CVE-2020-28579 is high.
The affected software of CVE-2020-28579 is Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2.
An authenticated, remote attacker can exploit CVE-2020-28579 by sending a specially crafted HTTP message to achieve remote code execution with elevated privileges.
Yes, you can find references for CVE-2020-28579 at the following URLs: [Reference 1](https://success.trendmicro.com/solution/000281954) and [Reference 2](https://www.tenable.com/security/research/tra-2020-63).