CVE-2019-9490

HIGH

Trend Micro InterScan Web Security Virtual Appliance <6.5 SP2 - Inf...

Title source: llm
STIX 2.1

Description

A vulnerability in Trend Micro InterScan Web Security Virtual Appliance version 6.5 SP2 could allow an non-authorized user to disclose administrative credentials. An attacker must be an authenticated user in order to exploit the vulnerability.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_confirm
https://success.trendmicro.com/solution/1122326
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/107848

Scores

CVSS v3 8.8
EPSS 0.0070
EPSS Percentile 72.2%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (1)
trendmicro/interscan_web_security_virtual_appliance 6.5 sp2
Published Apr 05, 2019
Tracked Since Feb 18, 2026