CVE-2020-28579: Trend Micro Interscan Web Security Virtual Appliance

High severity, CVSS 8.8. EPSS: 50.7% chance of exploitation in the next 30 days.

A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send a specially crafted HTTP message and achieve remote code execution with elevated privileges.

Affected products

  • Trend Micro Interscan Web Security Virtual Appliance: version 6.5 only

Published 2020-11-18. Last modified 2026-06-17.