Credentials management in InterScan Web Security Virtual Appliance (IWSVA) - CVE-2019-9490
Published: April 6, 2019 / Updated: August 8, 2020
InterScan Web Security Virtual Appliance (IWSVA)
Detailed vulnerability description
The vulnerability allows a remote authenticated user to execute arbitrary code.
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance version 6.5 SP2 could allow an non-authorized user to disclose administrative credentials. An attacker must be an authenticated user in order to exploit the vulnerability.