CVE Published: 19/01/2018 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: trendmicro |
Vendor: Trend Micro |
Product: Trend Micro Smart Protection Server (Standalone) Status : PUBLISHED
CVE-2017-11398 Description
A session hijacking via log disclosure vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an unauthenticated attacker to hijack active user sessions to perform authenticated requests on a vulnerable system.