CVE-2020-27010: Trend Micro Interscan Web Security Virtual Appliance

Medium severity, CVSS 4.8. EPSS: 0.7% chance of exploitation in the next 30 days.

A cross-site scripting (XSS) vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to tamper with the web interface of the product in a manner separate from the similar CVE-2020-8462.

Affected products

  • Trend Micro Interscan Web Security Virtual Appliance: version 6.5 only

Published 2020-12-17. Last modified 2026-06-17.