Описание
GetXXX method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote attacker to execute arbitrary code on vulnerable installations.
GetXXX method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote attacker to execute arbitrary code on vulnerable installations.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2018-3604
- https://success.trendmicro.com/solution/1119158
- https://www.zerodayinitiative.com/advisories/ZDI-18-067
- https://www.zerodayinitiative.com/advisories/ZDI-18-084
- https://www.zerodayinitiative.com/advisories/ZDI-18-088
- https://www.zerodayinitiative.com/advisories/ZDI-18-095
- https://www.zerodayinitiative.com/advisories/ZDI-18-096
- https://www.zerodayinitiative.com/advisories/ZDI-18-097
- https://www.zerodayinitiative.com/advisories/ZDI-18-102
Связанные уязвимости
CVSS3: 8.8
nvd
почти 8 лет назад
GetXXX method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote attacker to execute arbitrary code on vulnerable installations.