VYPR
High severity7.2NVD Advisory· Published Nov 18, 2020· Updated Jun 17, 2026

CVE-2020-28580

CVE-2020-28580

Description

A command injection vulnerability in AddVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary OS commands with elevated privileges.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:trendmicro:interscan_web_security_virtual_appliance:6.5:sp2:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:trendmicro:interscan_web_security_virtual_appliance:6.5:sp2:*:*:*:*:*:*
    • (no CPE)range: 6.5 SP2
    • (no CPE)range: 6.5 SP2

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.