Critical severity9.8NVD Advisory· Published Apr 12, 2017· Updated May 13, 2026
CVE-2016-7552
CVE-2016-7552
Description
On the Trend Micro Threat Discovery Appliance 2.6.1062r1, directory traversal when processing a session_id cookie allows a remote, unauthenticated attacker to delete arbitrary files as root. This can be used to bypass authentication or cause a DoS.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/rapid7/metasploit-framework/pull/8216/commits/0f07875a2ddb0bfbb4e985ab074e9fc56da1dcf6nvdExploitThird Party Advisory
- www.securityfocus.com/bid/97599nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.