VYPR
High severity7.2NVD Advisory· Published Nov 18, 2020· Updated Jun 17, 2026

CVE-2020-28581

CVE-2020-28581

Description

A command injection vulnerability in ModifyVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary OS commands with elevated privileges.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:trendmicro:interscan_web_security_virtual_appliance:6.5:sp2:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:trendmicro:interscan_web_security_virtual_appliance:6.5:sp2:*:*:*:*:*:*
    • (no CPE)range: 6.5 SP2
    • (no CPE)range: 6.5 SP2

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.