CVE-2020-24561

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
15/09/2020
Last modified:
24/09/2020

Description

A command injection vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow an attacker to execute arbitrary code on an affected system. An attacker must first obtain admin/root privileges on the SPLX console to exploit this vulnerability.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:trendmicro:serverprotect:3.0:*:*:*:*:linux:*:*


References to Advisories, Solutions, and Tools