CVE

Id
94372  
CVE No.
CVE-2016-7552  
Status
Candidate  
Description
On the Trend Micro Threat Discovery Appliance 2.6.1062r1, directory traversal when processing a session_id cookie allows a remote, unauthenticated attacker to delete arbitrary files as root. This can be used to bypass authentication or cause a DoS.  
Phase
Assigned (20160909)  
Votes
None (candidate not yet proposed)  
Comments