Trendmicro
trendmicro
559 CVEs • 105 products
Products (105)
Click to collapseToggle
Products (105)
Click to collapse
CVEs (559)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Trend Micro Antivirus for Mac 2021 (Consumer) is vulnerable to a memory exhaustion vulnerability that could lead to disabling all the scanning functionality within the application. Please note: an attacker must first obt...Show more |
1Trendmicro 1Housecall For Home Networks Nov 21, 2024 Jan 27, 2021 N/A· v4 7.8 HIGH· v3 4.4 MEDIUM· v2 A DLL hijacking vulnerability Trend Micro HouseCall for Home Networks version 5.3.1063 and below could allow an attacker to use a malicious DLL to escalate privileges and perform arbitrary code execution. An attacker mus...Show more |
A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local attacker to craft specific files that can cause a denial-of-service on the affected product. The specific flaw exists withi...Show more |
A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local attacker to craft specific files that can cause a denial-of-service on the affected product. The specific flaw exists withi...Show more |
A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local attacker to craft specific files that can cause a denial-of-service on the affected product. The specific flaw exists withi...Show more |
1Trendmicro 1Interscan Web Security Virtual Appliance Nov 21, 2024 Dec 17, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A command injection vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2, with the improved password hashing method enabled, could allow an unauthenticated attacker to execute certain commands by...Show more |
1Trendmicro 1Interscan Web Security Virtual Appliance Nov 21, 2024 Dec 17, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to manipulate system updates using a combination of CSRF bypass (CVE-2020-8461) and authentication bypass (CVE-2020-...Show more |
1Trendmicro 1Interscan Web Security Virtual Appliance Nov 21, 2024 Dec 17, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to send requests that appear to come from the localhost which could expose the product's admin interface to users wh...Show more |
1Trendmicro 1Interscan Web Security Virtual Appliance Nov 21, 2024 Dec 17, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to bypass a global authorization check for anonymous users by manipulating request paths. |
1Trendmicro 1Interscan Web Security Virtual Appliance Nov 21, 2024 Dec 17, 2020 N/A· v4 4.8 MEDIUM· v3 3.5 LOW· v2 A cross-site scripting (XSS) vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to tamper with the web interface of the product. |
1Trendmicro 1Interscan Web Security Virtual Appliance Nov 21, 2024 Dec 17, 2020 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A CSRF protection bypass vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to get a victim's browser to send a specifically encoded request without requiring a valid CS...Show more |
1Trendmicro 1Interscan Web Security Virtual Appliance Nov 21, 2024 Dec 17, 2020 N/A· v4 4.8 MEDIUM· v3 3.5 LOW· v2 A cross-site scripting (XSS) vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to tamper with the web interface of the product in a manner separate from the similar CVE...Show more |
1Trendmicro 2Apex One OfficescanNov 21, 2024 Dec 1, 2020 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal version, build and patch infor...Show more |
1Trendmicro 2Apex One OfficescanNov 21, 2024 Dec 1, 2020 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal number of managed agents. |
1Trendmicro 2Apex One OfficescanNov 21, 2024 Dec 1, 2020 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal server hostname and db names. |
1Trendmicro 2Apex One OfficescanNov 21, 2024 Dec 1, 2020 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal version and build information. |
A heap-based buffer overflow privilege escalation vulnerability in Trend Micro ServerProtect for Linux 3.0 may allow an attacker to escalate privileges on affected installations. An attacker must first obtain the ability...Show more |
1Trendmicro 2Apex One OfficescanNov 21, 2024 Dec 1, 2020 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal the total agents managed by th...Show more |
1Trendmicro 1Interscan Web Security Virtual Appliance Nov 21, 2024 Nov 18, 2020 N/A· v4 7.2 HIGH· v3 9.0 HIGH· v2 A command injection vulnerability in ModifyVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitr...Show more |
1Trendmicro 1Interscan Web Security Virtual Appliance Nov 21, 2024 Nov 18, 2020 N/A· v4 7.2 HIGH· v3 9.0 HIGH· v2 A command injection vulnerability in AddVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary...Show more |