CVE-2019-19691
- EPSS 0.53%
- Veröffentlicht 20.12.2019 16:15:11
- Zuletzt bearbeitet 21.11.2024 04:35:12
A vulnerability in Trend Micro Apex One and OfficeScan XG could allow an attacker to expose a masked credential key by manipulating page elements using development tools. Note that the attacker must already have admin/root privileges on the product c...
- EPSS 0.6%
- Veröffentlicht 28.10.2019 20:15:11
- Zuletzt bearbeitet 21.11.2024 04:32:47
A directory traversal vulnerability in Trend Micro Apex One, OfficeScan (11.0, XG) and Worry-Free Business Security (9.5, 10.0) may allow an attacker to bypass authentication and log on to an affected product's management console as a root user. The ...
CVE-2019-18187
- EPSS 71.92%
- Veröffentlicht 28.10.2019 20:15:11
- Zuletzt bearbeitet 12.02.2025 20:44:22
Trend Micro OfficeScan versions 11.0 and XG (12.0) could be exploited by an attacker utilizing a directory traversal vulnerability to extract files from an arbitrary zip file to a specific folder on the OfficeScan server, which could potentially lead...
CVE-2019-9492
- EPSS 0.11%
- Veröffentlicht 26.07.2019 14:15:12
- Zuletzt bearbeitet 21.11.2024 04:51:43
A DLL side-loading vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow an authenticated attacker to gain code execution and terminate the product's process - disabling endpoint protection. The attacker must have already gained authent...
CVE-2019-9489
- EPSS 0.57%
- Veröffentlicht 05.04.2019 23:29:00
- Zuletzt bearbeitet 21.11.2024 04:51:43
A directory traversal vulnerability in Trend Micro Apex One, OfficeScan (versions XG and 11.0), and Worry-Free Business Security (versions 10.0, 9.5 and 9.0) could allow an attacker to modify arbitrary files on the affected product's management conso...
CVE-2018-18332
- EPSS 0.23%
- Veröffentlicht 21.12.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:55:43
A Trend Micro OfficeScan XG weak file permissions vulnerability may allow an attacker to potentially manipulate permissions on some key files to modify other files and folders on vulnerable installations.
CVE-2018-18331
- EPSS 0.23%
- Veröffentlicht 21.12.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:55:43
A Trend Micro OfficeScan XG weak file permissions vulnerability on a particular folder for a particular group may allow an attacker to alter the files, which could lead to other exploits on vulnerable installations.
- EPSS 3.86%
- Veröffentlicht 06.07.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 04:05:45
A vulnerability in Trend Micro Maximum Security's (Consumer) 2018 (versions 12.0.1191 and below) User-Mode Hooking (UMH) driver could allow an attacker to create a specially crafted packet that could alter a vulnerable system in such a way that malic...
CVE-2018-10509
- EPSS 0.46%
- Veröffentlicht 12.06.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:27
A vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow a attacker to exploit it via a Browser Refresh attack on vulnerable installations. An attacker must be using a AD logon user account in order to exploit this vulnerability.
CVE-2018-10508
- EPSS 0.63%
- Veröffentlicht 12.06.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:27
A vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow a attacker to use a specially crafted URL to elevate account permissions on vulnerable installations. An attacker must already have at least guest privileges in order to exploit th...