CVE-2020-8470
- EPSS 1.12%
- Veröffentlicht 18.03.2020 01:15:12
- Zuletzt bearbeitet 21.11.2024 05:38:54
Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) server contains a vulnerable service DLL file that could allow an attacker to delete any file on the server with SYSTEM level privileges. Authentication is n...
CVE-2020-8468
- EPSS 5.03%
- Veröffentlicht 18.03.2020 01:15:12
- Zuletzt bearbeitet 13.02.2025 14:28:17
Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) agents are affected by a content validation escape vulnerability which could allow an attacker to manipulate certain agent client components. An attempted at...
- EPSS 0.6%
- Veröffentlicht 28.10.2019 20:15:11
- Zuletzt bearbeitet 21.11.2024 04:32:47
A directory traversal vulnerability in Trend Micro Apex One, OfficeScan (11.0, XG) and Worry-Free Business Security (9.5, 10.0) may allow an attacker to bypass authentication and log on to an affected product's management console as a root user. The ...
CVE-2019-9489
- EPSS 0.57%
- Veröffentlicht 05.04.2019 23:29:00
- Zuletzt bearbeitet 21.11.2024 04:51:43
A directory traversal vulnerability in Trend Micro Apex One, OfficeScan (versions XG and 11.0), and Worry-Free Business Security (versions 10.0, 9.5 and 9.0) could allow an attacker to modify arbitrary files on the affected product's management conso...
- EPSS 0.36%
- Veröffentlicht 16.02.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:10:19
A DLL Hijacking vulnerability in Trend Micro's User-Mode Hooking Module (UMH) could allow an attacker to run arbitrary code on a vulnerable system.
CVE-2016-1224
- EPSS 0.48%
- Veröffentlicht 19.06.2016 01:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
CRLF injection vulnerability in Trend Micro Worry-Free Business Security Service 5.x and Worry-Free Business Security 9.0 allows remote attackers to inject arbitrary HTTP headers and conduct cross-site scripting (XSS) attacks via unspecified vectors.
CVE-2016-1223
- EPSS 1.68%
- Veröffentlicht 19.06.2016 01:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Directory traversal vulnerability in Trend Micro Office Scan 11.0, Worry-Free Business Security Service 5.x, and Worry-Free Business Security 9.0 allows remote attackers to read arbitrary files via unspecified vectors.
CVE-2008-2433
- EPSS 12.31%
- Veröffentlicht 27.08.2008 20:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The web management console in Trend Micro OfficeScan 7.0 through 8.0, Worry-Free Business Security 5.0, and Client/Server/Messaging Suite 3.5 and 3.6 creates a random session token based only on the login time, which makes it easier for remote attack...