mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 02:31:38 +00:00
882 B
882 B
CVE-2017-9035
Description
Trend Micro ServerProtect for Linux 3.0 before CP 1531 allows attackers to eavesdrop and tamper with updates by leveraging unencrypted communications with update servers.
POC
Reference
- http://packetstormsecurity.com/files/142645/Trend-Micro-ServerProtect-Disclosure-CSRF-XSS.html
- http://seclists.org/fulldisclosure/2017/May/91
- https://www.coresecurity.com/advisories/trend-micro-serverprotect-multiple-vulnerabilities