CVE-2017-11391
30Vexday Risk Score
Corrige pronto. Ella tiene exploit funcional público.
ssvc Attendepss 62%
de la publicación al arma65 días
Publicada en NVD3 ago
metasploit+65d
probabilidad de explotación
62%top 1% de las CVE
explotación observada
noninguna fuente lo reporta
Proxy command injection vulnerability in Trend Micro InterScan Messaging Virtual Appliance 9.0 and 9.1 allows remote attackers to execute arbitrary code on vulnerable installations. The specific flaw can be exploited by parsing the "t" parameter within modTMCSS Proxy. Formerly ZDI-CAN-4744.
Productos afectados
Trend Micro · Trend Micro InterScan Messaging Security Virtual Appliance