TROYANOSYVIRUS
Back to CVEs

CVE-2017-11396

HIGH
7.2

Description

Vulnerability issues with the web service inspection of input parameters in Trend Micro Web Security Virtual Appliance 6.5 may allow potential attackers who already have administration rights to the console to implement remote code injections.

CVE Details

CVSS v3.1 Score7.2
SeverityHIGH
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredHIGH
User InteractionNONE
Published9/22/2017
Last Modified4/20/2025
Sourcenvd
Honeypot Sightings0

Affected Products

trendmicro:interscan_web_security_virtual_appliance

References

https://success.trendmicro.com/solution/1117412(af854a3a-2127-422b-91ae-364da2661108)

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.