Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2016-7552 PoC — Trend Micro Threat Discovery Appliance 路径遍历漏洞

Source
Associated Vulnerability
Title:Trend Micro Threat Discovery Appliance 路径遍历漏洞 (CVE-2016-7552)
Description:Trend Micro Threat Discovery Appliance(TDA)是美国趋势科技(Trend Micro)公司的一款集成云安全技术的威胁发现设备。该设备提供网络层恶意活动的检测、威胁管理服务以及威胁分析和报表等功能。 Trend Micro TDA 2.6.1062r1版本中存在目录遍历漏洞。远程攻击者可利用该漏洞以root权限删除任意文件,绕过身份验证或造成拒绝服务。
Description
Trend Micro Threat Discovery Appliance 2.6.1062r1 is vulnerable to a  directory traversal vulnerability when processing a session_id cookie, which allows a remote, unauthenticated attacker to delete arbitrary files as root. This can be used to bypass authentication or cause a DoS.
File Snapshot

id: CVE-2016-7552 info: name: Trend Micro Threat Discovery Appliance 2.6.1062r1 - Authentication ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.