Rewterz
Rewterz Threat Alert – Trickbot – IOCs
May 29, 2020
Rewterz
Rewterz Threat Advisory – Cisco Products Affected by SaltStack FrameWork Vulnerabilities
May 29, 2020

Rewterz Threat Advisory – CVE-2020-8605 – Trend Micro InterScan Web Security Virtual Appliance Vulnerability

Severity

High

Analysis Summary

Trend Micro InterScan Web Security Virtual Appliance could allow a remote authenticated attacker to execute arbitrary code on the system, caused by an error within the LogSettingHandler class. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system with root privileges.

Impact

Execution of arbitrary code

Affected Vendors

Trend Micro

Affected Products

Trend Micro InterScan Web Security Virtual Appliance (IWSVA) 6.5

Remediation

Refer to Trend Micro Security Bulletin: 000253095 for patch, upgrade or suggested workaround information.

https://success.trendmicro.com/solution/000253095