VYPR
Medium severity4.9NVD Advisory· Published Nov 9, 2020· Updated Jun 17, 2026

CVE-2020-27017

CVE-2020-27017

Description

Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 is vulnerable to an XML External Entity Processing (XXE) vulnerability which could allow an authenticated administrator to read arbitrary local files. An attacker must already have obtained product administrator/root privileges to exploit this vulnerability.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:trendmicro:interscan_messaging_security_virtual_appliance:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:trendmicro:interscan_messaging_security_virtual_appliance:*:*:*:*:*:*:*:*range: <=9.1
    • (no CPE)range: 9.1
    • (no CPE)range: 9.1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.