RULE(RULE ID:320431)

Rule General Information
Release Date: 2017-08-28
Rule Name: WEB-OTHER Trend Micro SafeSync for Enterprise restartService Command Injection -2 (ZDI-17-130)
Severity:
CVE ID:
Rule Protection Details
Description: A command injection vulnerability exists in Trend Micro's SafeSync for Enterprise. The vulnerability is due to insufficient validation of the user-supplied parameter sent to the license end point.
Impact: Remote command execution
Affected OS: Windows, Mac OS, Linux
Reference: ZeroDayInitiative:ZDI-17-126
Solutions
Update vendor's patch.