HTTP: Generic Directory Traversal Signature

This signature detects attempts to exploit a Directory Traversal. A successful attack can lead to arbitrary code execution or disclosure of information or both.

Extended Description

Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) server contains a vulnerable service DLL file that could allow an attacker to delete any file on the server with SYSTEM level privileges. Authentication is not required to exploit this vulnerability.

Affected Products

Trendmicro worry-free_business_security

Short Name
HTTP:DIR:GENERIC-TRAVERSAL-1
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2018-0258 Directory Generic Signature Traversal
Release Date
06/11/2019
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3642
False Positive
Unknown
Vendors

Trendmicro

Found a potential security threat?