CVE-2016-7552

Publication date

2017-04-12 10:00:00

Family

mitre

State

PUBLISHED

Description

On the Trend Micro Threat Discovery Appliance 2.6.1062r1, directory traversal when processing a session_id cookie allows a remote, unauthenticated attacker to delete arbitrary files as root. This can be used to bypass authentication or cause a DoS.