Sploitus

CVE-2016-8585

4 known exploits for CVE-2016-8585

admin_sys_time.cgi in Trend Micro Threat Discovery Appliance 2.6.1062r1 and earlier allows remote authenticated users to execute arbitrary code as the root user via shell metacharacters in the timezone parameter.

Trendmicro Threat Discovery Appliance
≤ 2.6.1062
Fix
Available
CVSS 2.0
9.0 HIGH
CVSS 3.1
8.8 HIGH
EPSS
7.2% (94th percentile)
Weakness
CWE-264
NVD status
Modified
Published
2017-04-28
CVE-2016-8585 at NVD
Authoritative description, scoring and affected products

4 known exploits for CVE-2016-8585

Proof-of-concept code and exploit modules indexed by Sploitus