EIP-2026-112790
PRE-CVETrend Micro InterScan Messaging Security (Virtual Appliance) - 'Proxy.php' Remote Code Execution (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-112790. PoCs published by Mehmet Ince.
AI-analyzed exploit summary This Metasploit module exploits an authentication bypass and command injection vulnerability in Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA). It extracts a JSESSIONID from a publicly accessible log file and uses it to execute arbitrary commands via a vulnerable PHP endpoint.
Description
Trend Micro InterScan Messaging Security (Virtual Appliance) - 'Proxy.php' Remote Code Execution (Metasploit)
Exploits (1)
This Metasploit module exploits an authentication bypass and command injection vulnerability in Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA). It extracts a JSESSIONID from a publicly accessible log file and uses it to execute arbitrary commands via a vulnerable PHP endpoint.