RULE(RULE ID:711098)

Rule General Information
Release Date: 2017-04-13
Rule Name: WEB-OTHER Trend Micro SafeSync for Enterprise restartService Command Injection -1 (ZDI-17-130)
Severity:
CVE ID:
Rule Protection Details
Description: A command injection vulnerability exists in Trend Micro's SafeSync for Enterprise. The vulnerability is due to insufficient validation of the user-supplied parameter sent to restartService end point.
Impact: Remote command execution
Affected OS: Windows, Mac OS, Other Unix, FreeBSD, Linux
Reference: ZeroDayInitiative:ZDI-17-130
Solutions
Update vendor's patch.