CVE-2017-11398

Publication date

2018-01-19 19:00:00

Family

trendmicro

State

PUBLISHED

Description

A session hijacking via log disclosure vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an unauthenticated attacker to hijack active user sessions to perform authenticated requests on a vulnerable system.