CVE-2020-8606: vulnerability in Trend Micro InterScan Web Security Virtual…
Published · Updated
40Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 73%
from disclosure to weapon14 days
Published on NVDMay 27
metasploit+14d
exploitation probability
73%top 1% of all CVEs
observed exploitation
nono source reports it
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to bypass authentication on affected installations of Trend Micro InterScan Web Security Virtual Appliance.
Affected products
Trend Micro · Trend Micro InterScan Web Security Virtual ApplianceRelated CVEs — Trend Micro InterScan Web Security Virtual…
In the same product, most dangerous first.
References
http://packetstormsecurity.com/files/158171/Trend-Micro-Web-Security-Virtual-Appliance-Remote-Code-Execution.htmlhttp://packetstormsecurity.com/files/158423/Trend-Micro-Web-Security-Remote-Code-Execution.htmlhttps://success.trendmicro.com/solution/000253095https://www.zerodayinitiative.com/advisories/ZDI-20-677/