PT-2017-11967 · Trend Micro · Trend Micro Deep Discovery Inspector

Published

2017-08-01

·

Updated

2019-10-03

·

CVE-2017-11381

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Trend Micro Deep Discovery Director version 1.1
Description A command injection issue exists that allows an attacker to restore accounts with access to the pre-configuration console.
Recommendations For Trend Micro Deep Discovery Director version 1.1, update to a version that includes a fix for this issue, as no specific workaround is provided in the available data.

Fix

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-11381

Affected Products

Trend Micro Deep Discovery Inspector