Trend Micro Smart Protection Server 2.5 before build 2200, 2.6 before build 2106, and 3.0 before build 1330 allows local webserv users to execute arbitrary code with root privileges via a Trojan horse .war file in the Solr webapps directory.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Smart_protection_server | Trendmicro | 2.5 (including) | 2.5 (including) |
Smart_protection_server | Trendmicro | 2.6 (including) | 2.6 (including) |
Smart_protection_server | Trendmicro | 3.0 (including) | 3.0 (including) |