HTTP: Trend Micro IMSVA Management Portal Authentication Bypass
This signature attempts to detect an authentication bypass which has been reported in Trend Micro InterScan Mail Security Virtual Appliance. A remote, unauthenticated user can exploit this vulnerability by sending a request to the vulnerable URL on the target server. Successful exploitation of this vulnerability could allow the attacker to access the service without credentials.
Extended Description
A vulnerability in the Trend Micro InterScan Messaging Security Virtual Appliance 9.0 and 9.1 management portal could allow an unauthenticated user to access sensitive information in a particular log file that could be used to bypass authentication on vulnerable installations.
Affected Products
Trendmicro interscan_messaging_security_virtual_appliance
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Trendmicro
4.3