Trend Micro Control Manager "module" File Disclosure Vulnerability
Description
A vulnerability has been identified in Trend Micro Control Manager, which could be exploited by malicious users to gain unauthorized access to arbitrary files on a vulnerable system. This issue is caused by an input validation error in the "WebApp/widget/proxy_request.php" script when processing the "module" parameter, which could be exploited to conduct directory traversal attacks and disclose the contents of arbitrary files.
Vulnerable Products
Vulnerable Software: Trend Micro Control Manager version 5.5