CVE-2020-8604
40Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 90%
from disclosure to weapon14 days
Published on NVDMay 27
metasploit+14d
exploitation probability
90%top 1% of all CVEs
observed exploitation
nono source reports it
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to disclose sensitive informatoin on affected installations.
Affected products
Trend Micro · Trend Micro InterScan Web Security Virtual ApplianceReferences
http://packetstormsecurity.com/files/158171/Trend-Micro-Web-Security-Virtual-Appliance-Remote-Code-Execution.htmlhttp://packetstormsecurity.com/files/158423/Trend-Micro-Web-Security-Remote-Code-Execution.htmlhttps://success.trendmicro.com/solution/000253095https://www.zerodayinitiative.com/advisories/ZDI-20-678/