← volver
CVE-2020-27018

CVE-2020-27018

EPSS 3.5%
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS EPSS 3.5%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
09 nov 2020Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 is vulnerable to a server side request forgery vulnerability which could allow an authenticated attacker to abuse the product's web server and grant access to web resources or parts of local files. An attacker must already have obtained authenticated privileges on the product to exploit this vulnerability.

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →