HTTP: Trend Micro IWSVA ManagePatches filename Command Injection

This signature detects attempts to exploit a known vulnerability in Trend Micro InterScan Web Security Virtual Appliance (IWSVA). Successful exploitation of this vulnerability can lead to remote command execution in the context of the root user.

Short Name
HTTP:TM-IWSVA-CI
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
Command IWSVA Injection ManagePatches Micro Trend filename
Release Date
08/04/2016
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Unknown

Found a potential security threat?