Описание
Trend Micro ServerProtect for Linux 3.0 before CP 1531 allows attackers to eavesdrop and tamper with updates by leveraging unencrypted communications with update servers.
Trend Micro ServerProtect for Linux 3.0 before CP 1531 allows attackers to eavesdrop and tamper with updates by leveraging unencrypted communications with update servers.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2017-9035
- https://success.trendmicro.com/solution/1117411
- https://www.coresecurity.com/advisories/trend-micro-serverprotect-multiple-vulnerabilities
- http://packetstormsecurity.com/files/142645/Trend-Micro-ServerProtect-Disclosure-CSRF-XSS.html
- http://seclists.org/fulldisclosure/2017/May/91
- http://www.securitytracker.com/id/1038548
Связанные уязвимости
CVSS3: 7.4
nvd
больше 8 лет назад
Trend Micro ServerProtect for Linux 3.0 before CP 1531 allows attackers to eavesdrop and tamper with updates by leveraging unencrypted communications with update servers.