trendmicro

559 tracked vulnerabilities.

CVE-2017-11393 CRITICAL
Trend Micro OfficeScan 11 and XG (12) - Remote Code Execution via Proxy.php tr Parameter
Aug 03, 2017
CVSS 9.8
EPSS 0.08
CVE-2017-11392 HIGH
Trend Micro InterScan Messaging Security Virtual Appliance 9.0-9.1 - RCE via modTMCSS Proxy
Aug 03, 2017
CVSS 8.8
EPSS 0.74
CVE-2017-11391 HIGH
Trend Micro InterScan Messaging Security Virtual Appliance 9.0-9.1 - RCE via modTMCSS Proxy
Aug 03, 2017
CVSS 8.8
EPSS 0.81
CVE-2017-11382 HIGH
Trend Micro Deep Discovery Email Inspector 2.5.1 - Denial of Service via Arbitrary File Deletion
Aug 03, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-11390 HIGH
Trend Micro Control Manager 6.0 - XML External Entity Injection
Aug 02, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-11389 CRITICAL
Trend Micro Control Manager 6.0 - Path Traversal and Remote Code Execution
Aug 02, 2017
CVSS 9.8
EPSS 0.07
CVE-2017-11388 HIGH
Trend Micro Control Manager 6.0 - SQL Injection and Remote Code Execution via RestfulServiceUtility.NET.dll
Aug 02, 2017
CVSS 8.8
EPSS 0.06
CVE-2017-11387 HIGH
Trend Micro Control Manager 6.0 - Unauthenticated Information Disclosure via Debug Logging Level
Aug 02, 2017
CVSS 7.5
EPSS 0.02
CVE-2017-11386 CRITICAL
Trend Micro Control Manager 6.0 - Remote Code Execution via SQL Injection in cmdHandlerNewReportScheduler.dll
Aug 02, 2017
CVSS 9.8
EPSS 0.07
CVE-2017-11385 CRITICAL
Trend Micro Control Manager 6.0 - Remote Code Execution via SQL Injection in cmdHandlerStatusMonitor.dll
Aug 02, 2017
CVSS 9.8
EPSS 0.07
CVE-2017-11384 CRITICAL
Trend Micro Control Manager 6.0 - SQLi & RCE via Opcode 0x3b21 in mdHandlerLicenseManager.dll
Aug 02, 2017
CVSS 9.8
EPSS 0.07
CVE-2017-11383 CRITICAL
Trend Micro Control Manager 6.0 - SQL Injection and Remote Code Execution via Opcode 0x1b07
Aug 02, 2017
CVSS 9.8
EPSS 0.07
CVE-2017-11381 CRITICAL
Trend Micro Deep Discovery Director 1.1 - OS Command Injection
Aug 01, 2017
CVSS 9.8
EPSS 0.18
CVE-2017-11380 CRITICAL
Trend Micro Deep Discovery Director 1.1 - Use of Hard-coded Credentials
Aug 01, 2017
CVSS 9.8
EPSS 0.01
CVE-2017-11379 HIGH
Trend Micro Deep Discovery Director 1.1 - Insufficient Verification of Data Authenticity in Backup Archives
Aug 01, 2017
CVSS 7.5
EPSS 0.00
CVE-2017-9037 MEDIUM
Trend Micro ServerProtect for Linux <3.0 - XSS
May 26, 2017
CVSS 6.1
EPSS 0.01
CVE-2017-9036 HIGH
Trend Micro ServerProtect for Linux <3.0 - Privilege Escalation
May 26, 2017
CVSS 7.8
EPSS 0.00
CVE-2017-9035 HIGH
Trend Micro ServerProtect for Linux <3.0 - Info Disclosure
May 26, 2017
CVSS 7.4
EPSS 0.01
CVE-2017-9034 CRITICAL
Trend Micro ServerProtect for Linux <3.0 - RCE
May 26, 2017
CVSS 9.8
EPSS 0.06
CVE-2017-9033 HIGH
Trend Micro ServerProtect for Linux <3.0 - CSRF
May 26, 2017
CVSS 8.8
EPSS 0.00
CVE-2017-9032 MEDIUM
Trend Micro ServerProtect for Linux <3.0 - XSS
May 26, 2017
CVSS 6.1
EPSS 0.01
CVE-2017-8801 MEDIUM
Trend Micro OfficeScan 11.0 < SP1 CP 6325 and XG < CP 1352 - Cross-Site Scripting via Blocked Website URI
May 05, 2017
CVSS 6.1
EPSS 0.00
CVE-2017-5481 HIGH
Trend Micro OfficeScan 11.0 - Authenticated Privilege Escalation via Encrypted Password Leak
May 03, 2017
CVSS 8.8
EPSS 0.00
CVE-2017-7896 MEDIUM
Trend Micro InterScan Messaging Security Virtual Appliance < 9.1 - Cross-Site Scripting
Apr 18, 2017
CVSS 6.1
EPSS 0.53
CVE-2017-6340 MEDIUM
Trend Micro InterScan Web Security Virtual Appliance < 6.5 - Stored XSS via Report Template Name
Apr 05, 2017
CVSS 5.4
EPSS 0.00