CVE-2020-8606
40Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 73%
from disclosure to weapon14 days
Published on NVDMay 27
metasploit+14d
exploitation probability
73%top 1% of all CVEs
observed exploitation
nono source reports it
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to bypass authentication on affected installations of Trend Micro InterScan Web Security Virtual Appliance.
Affected products
Trend Micro · Trend Micro InterScan Web Security Virtual ApplianceReferences
http://packetstormsecurity.com/files/158171/Trend-Micro-Web-Security-Virtual-Appliance-Remote-Code-Execution.htmlhttp://packetstormsecurity.com/files/158423/Trend-Micro-Web-Security-Remote-Code-Execution.htmlhttps://success.trendmicro.com/solution/000253095https://www.zerodayinitiative.com/advisories/ZDI-20-677/