Back to search
CVE-2016-9269
Published: Feb 21, 2017
Modified: Aug 6, 2024
PUBLISHED
Description
Remote Command Execution in com.trend.iwss.gui.servlet.ManagePatches in Trend Micro Interscan Web Security Virtual Appliance (IWSVA) version 6.5-SP2_Build_Linux_1707 and earlier allows authenticated, remote users with least privileges to run arbitrary commands on the system as root via Patch Update functionality. This was resolved in Version 6.5 CP 1737.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
96252
vdb-entry
x_refsource_BID
https://success.trendmicro.com/solution/1116672
x_refsource_CONFIRM
1037849
vdb-entry
x_refsource_SECTRACK
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now