EIP-2026-112791
PRE-CVETrend Micro OfficeScan 11.0/XG (12.0) - Server Side Request Forgery
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-112791. PoCs published by hyp3rlinx.
AI-analyzed exploit summary This advisory details an unauthenticated Server-Side Request Forgery (SSRF) vulnerability in Trend Micro OfficeScan XG (12.0) and v11.0, allowing attackers to make arbitrary HTTP requests via the 'help_Proxy.php' endpoint. The writeup includes a proof-of-concept URL and technical details about the vulnerability.
Description
Trend Micro OfficeScan 11.0/XG (12.0) - Server Side Request Forgery
Exploits (1)
This advisory details an unauthenticated Server-Side Request Forgery (SSRF) vulnerability in Trend Micro OfficeScan XG (12.0) and v11.0, allowing attackers to make arbitrary HTTP requests via the 'help_Proxy.php' endpoint. The writeup includes a proof-of-concept URL and technical details about the vulnerability.