Directory traversal vulnerability in Trend Micro Control Manager 6.0 allows remote code execution by attackers able to drop arbitrary files in a web-facing directory. Formerly ZDI-CAN-4684.
https://success.trendmicro.com/solution/1117722
http://www.zerodayinitiative.com/advisories/ZDI-17-500