EIP-2026-119446
PRE-CVETrend Micro Data Loss Prevention Virtual Appliance 5.5 - Directory Traversal
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-119446. PoCs published by White Hat Consultores.
AI-analyzed exploit summary The exploit demonstrates a directory traversal vulnerability in Trend Micro Data Loss Prevention Virtual Appliance 5.5 via a crafted URL path using double-encoded UTF-8 sequences to bypass restrictions and access arbitrary files (e.g., /etc/passwd). The PoC is a direct URL path that can be used to retrieve sensitive files outside the web root.
Description
Trend Micro Data Loss Prevention Virtual Appliance 5.5 - Directory Traversal
Exploits (1)
The exploit demonstrates a directory traversal vulnerability in Trend Micro Data Loss Prevention Virtual Appliance 5.5 via a crafted URL path using double-encoded UTF-8 sequences to bypass restrictions and access arbitrary files (e.g., /etc/passwd). The PoC is a direct URL path that can be used to retrieve sensitive files outside the web root.