HTTP: Trend Micro IWSVA DeploymentWizardAction Command Injection

A command injection vulnerability has been reported in Trend Micro InterScan Web Security Virtual Appliance (IWSVA). Successful exploitation of this vulnerability can lead to remote command execution in the context of the root.

Short Name
HTTP:SQL:TRENDMICRO-IWSVA-SQL
Severity
Minor
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
Command DeploymentWizardAction IWSVA Injection Micro Trend
Release Date
08/30/2017
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Unknown

Found a potential security threat?