PT-2020-5819 · Trend Micro · Trend Micro Interscan Web Security Virtual Appliance

Published

2020-11-18

·

Updated

2020-12-09

·

CVE-2020-28578

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Trend Micro InterScan Web Security Virtual Appliance version 6.5 SP2
Description: A vulnerability in Trend Micro InterScan Web Security Virtual Appliance could allow an unauthenticated, remote attacker to send a specially crafted HTTP message and achieve remote code execution with elevated privileges. The issue is related to a buffer overflow in memory, which can be exploited by a remote attacker to execute arbitrary code.
Recommendations: For Trend Micro InterScan Web Security Virtual Appliance version 6.5 SP2, consider restricting access to the appliance until a patch is available. As a temporary workaround, disabling the HTTP service or restricting the ability to send specially crafted HTTP messages may help minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

RCE

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-01788
CVE-2020-28578

Affected Products

Trend Micro Interscan Web Security Virtual Appliance