ZeroHour

CVE-2016-8585

PoC ×2
CVSS 3.0
8.8 high
EPSS
7%p94
Published
()
Modified
Description

admin_sys_time.cgi in Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier allows remote authenticated users to execute arbitrary code as the root user via shell metacharacters in the timezone parameter.

Vendors
trendmicro
Products
threat discovery appliance
Weakness
CWE-264
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.