Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-24561

Опубликовано: 15 сент. 2020
Источник: nvd
CVSS3: 9.1
CVSS2: 9
EPSS Низкий

Описание

A command injection vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow an attacker to execute arbitrary code on an affected system. An attacker must first obtain admin/root privileges on the SPLX console to exploit this vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:trendmicro:serverprotect:3.0:*:*:*:*:linux:*:*

EPSS

Процентиль: 85%
0.02364
Низкий

9.1 Critical

CVSS3

9 Critical

CVSS2

Дефекты

CWE-77

Связанные уязвимости

github
больше 3 лет назад

A command injection vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow an attacker to execute arbitrary code on an affected system. An attacker must first obtain admin/root privileges on the SPLX console to exploit this vulnerability.

EPSS

Процентиль: 85%
0.02364
Низкий

9.1 Critical

CVSS3

9 Critical

CVSS2

Дефекты

CWE-77