HTTP: Trend Micro Apex One and OfficeScan CVE-2020-8470 Directory Traversal

This signature detects attempts to exploit a known vulnerability against Trend Micro Apex One and OfficeScan. A successful attack can lead to directory traversal and arbitrary code execution.

Extended Description

Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) server contains a vulnerable service DLL file that could allow an attacker to delete any file on the server with SYSTEM level privileges. Authentication is not required to exploit this vulnerability.

Affected Products

Trendmicro worry-free_business_security

Short Name
HTTP:DIR:TRNDMICRO-OFSCN-DIRTRV
Severity
Critical
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Apex CVE-2020-8470 Directory Micro OfficeScan One Traversal Trend and
Release Date
04/28/2020
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3590
False Positive
Unknown
Vendors

Trendmicro

CVSS Score

9.4

Found a potential security threat?