EIP-2026-119686
PRE-CVETrend Micro Deep Security 6.5 - XML External Entity Injection / Local Privilege Escalation / Remote Code Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-119686. PoCs published by SecuriTeam.
AI-analyzed exploit summary The advisory details three vulnerabilities in Trend Micro Deep Security 6.5: an XXE leading to arbitrary file disclosure, a local privilege escalation via SSH configuration injection, and a remote code execution via unsanitized parameters in a servlet. Proof-of-concept requests are provided for each vulnerability.
Description
Trend Micro Deep Security 6.5 - XML External Entity Injection / Local Privilege Escalation / Remote Code Execution
Exploits (1)
The advisory details three vulnerabilities in Trend Micro Deep Security 6.5: an XXE leading to arbitrary file disclosure, a local privilege escalation via SSH configuration injection, and a remote code execution via unsanitized parameters in a servlet. Proof-of-concept requests are provided for each vulnerability.