|
265621
|
8.8 |
HIGH
Network
|
trendmicro
|
threat_discovery_appliance
|
log_query_system.cgi in Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier allows remote authenticated users to execute arbitrary code as the root user via shell metacharacters in the cach…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8592
|
2024-11-21 11:59 |
2017-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265622
|
8.8 |
HIGH
Network
|
trendmicro
|
threat_discovery_appliance
|
log_query.cgi in Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier allows remote authenticated users to execute arbitrary code as the root user via shell metacharacters in the cache_id pa…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8591
|
2024-11-21 11:59 |
2017-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265623
|
8.8 |
HIGH
Network
|
trendmicro
|
threat_discovery_appliance
|
log_query_dlp.cgi in Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier allows remote authenticated users to execute arbitrary code as the root user via shell metacharacters in the cache_i…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8590
|
2024-11-21 11:59 |
2017-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265624
|
8.8 |
HIGH
Network
|
trendmicro
|
threat_discovery_appliance
|
log_query_dae.cgi in Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier allows remote authenticated users to execute arbitrary code as the root user via shell metacharacters in the cache_i…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8589
|
2024-11-21 11:59 |
2017-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265625
|
7.3 |
HIGH
Local
|
trendmicro
|
threat_discovery_appliance
|
The hotfix_upload.cgi in Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier allows remote authenticated users to execute arbitrary code via shell metacharacters in the file name of an uplo…
|
CWE-284
Improper Access Control
|
CVE-2016-8588
|
2024-11-21 11:59 |
2017-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265626
|
7.3 |
HIGH
Local
|
trendmicro
|
threat_discovery_appliance
|
dlp_policy_upload.cgi in Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier allows remote authenticated users to execute arbitrary code via an archive file containing a symlink to /eng_ptn…
|
CWE-284
Improper Access Control
|
CVE-2016-8587
|
2024-11-21 11:59 |
2017-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265627
|
8.8 |
HIGH
Network
|
trendmicro
|
threat_discovery_appliance
|
detected_potential_files.cgi in Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier allows remote authenticated users to execute arbitrary code as the root user via shell metacharacters in …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8586
|
2024-11-21 11:59 |
2017-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265628
|
8.8 |
HIGH
Network
|
trendmicro
|
threat_discovery_appliance
|
admin_sys_time.cgi in Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier allows remote authenticated users to execute arbitrary code as the root user via shell metacharacters in the timezo…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8585
|
2024-11-21 11:59 |
2017-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265629
|
9.8 |
CRITICAL
Network
|
trendmicro
|
threat_discovery_appliance
|
Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier uses predictable session values, which allows remote attackers to bypass authentication by guessing the value.
|
CWE-284
Improper Access Control
|
CVE-2016-8584
|
2024-11-21 11:59 |
2017-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265630
|
9.1 |
CRITICAL
Network
|
moxa
|
awk-3131a_firmware
|
An exploitable OS Command Injection vulnerability exists in the web application 'ping' functionality of Moxa AWK-3131A Wireless Access Points running firmware 1.1. Specially crafted web form input ca…
|
CWE-78
OS Command
|
CVE-2016-8721
|
2024-11-21 11:59 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|