Trendmicro
trendmicro
575 CVEs • 105 products
Products (105)
Click to collapseToggle
Products (105)
Click to collapse
CVEs (575)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and execute commands on affected installations. |
Trend Micro Cleaner One Pro is vulnerable to a Privilege Escalation vulnerability that could allow a local attacker to unintentionally delete privileged Trend Micro files including its own. |
1Trendmicro 1Worry Free Business Security Services Jun 17, 2026 Jul 10, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A missing authentication vulnerability in Trend Micro Worry-Free Business Security Services (WFBSS) agent could have allowed an unauthenticated attacker to remotely take control of the agent on affected installations....Show more |
Trend Micro Password Manager (Consumer) version 5.8.0.1327 and below is vulnerable to a Link Following Privilege Escalation Vulnerability that could allow an attacker the opportunity to abuse symbolic links and other met...Show more |
Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation vulnerability that could allow a local attacker to unintentionally delete privileged Trend Micro files including its own. |
Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation vulnerability that could allow a local attacker to unintentionally delete privileged Trend Micro files including its own. |
Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation vulnerability that could allow a local attacker to unintentionally delete privileged Trend Micro files including its own. |
1Trendmicro 1Trend Micro Endpoint Encryption Jun 17, 2026 Jun 17, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 A post-auth SQL injection vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to escalate privileges on affected installations. This is similar to, but not identical to CVE-2025-4921...Show more |
1Trendmicro 1Trend Micro Endpoint Encryption Jun 17, 2026 Jun 17, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to CVE...Show more |
1Trendmicro 1Trend Micro Endpoint Encryption Jun 17, 2026 Jun 17, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 An authentication bypass vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to access key methods as an admin user and modify product configurations on affected installations. |
1Trendmicro 1Trend Micro Endpoint Encryption Jun 17, 2026 Jun 17, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 A post-auth SQL injection vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the abi...Show more |
1Trendmicro 1Trend Micro Endpoint Encryption Jun 17, 2026 Jun 17, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a post-authentication remote code execution on affected installations. Please note: an attacker must first obtain...Show more |
1Trendmicro 1Trend Micro Endpoint Encryption Jun 17, 2026 Jun 17, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to CVE...Show more |
1Trendmicro 1Trend Micro Endpoint Encryption Jun 17, 2026 Jun 17, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to CVE...Show more |
1Trendmicro 1Trend Micro Endpoint Encryption Jun 17, 2026 Jun 17, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 A SQL injection vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to ex...Show more |
Trend Micro Password Manager (Consumer) version 5.0.0.1266 and below is vulnerable to a Link Following Local Privilege Escalation Vulnerability that could allow a local attacker to leverage this vulnerability to delete f...Show more |
A link following vulnerability in Trend Micro Deep Security 20.0 agents could allow a local attacker to create a denial of service (DoS) situation on affected installations. Please note: an attacker must first obtain...Show more |
A link following vulnerability in the anti-malware solution portion of Trend Micro Deep Security 20.0 agents could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must...Show more |
A link following vulnerability in Trend Micro Deep Security 20.0 agents could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute...Show more |
A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (SaaS) could allow an attacker to manipulate certain parameters leading to information disclosure on affected installations. Please note...Show more |