RULE(RULE ID:334209)

Rule General Information
Release Date: 2021-11-29
Rule Name: Trend Micro SafeSync for Enterprise restartService Command Injection Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: A command injection vulnerability exists in Trend Micro's SafeSync for Enterprise. The vulnerability is due to insufficient validation of the user-supplied parameter sent to restartService end point. A remote, authenticated attacker could exploit this vulnerability by sending a crafted input to the vulnerable system. Successful exploitation could lead to arbitrary command execution under the security context of the root.
Impact: An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference:
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
https://success.trendmicro.com/solution/1116749