CVE Database
/

CVE-2020-27018

Back to search

CVE-2020-27018

Published: Nov 9, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 is vulnerable to a server side request forgery vulnerability which could allow an authenticated attacker to abuse the product's web server and grant access to web resources or parts of local files. An attacker must already have obtained authenticated privileges on the product to exploit this vulnerability.

VendorProductVersions

Trend Micro

Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA)

affected
9.1

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now