Latest CVE Feed
-
7.2
HIGHCVE-2021-25251
The Trend Micro Security 2020 and 2021 families of consumer products are vulnerable to a code injection vulnerability which could allow an attacker to disable the program's password protection and disable protection. An attacker must already have administ... Read more
- EPSS Score: %0.86
- Published: Feb. 10, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-25250
An improper access control vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Service and OfficeScan XG SP1 on a sensitive file could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must firs... Read more
- EPSS Score: %0.07
- Published: Apr. 13, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-25249
An out-of-bounds write information disclosure vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security (10.0 SP1 and Services) could allow a local attacker to escalate privileges on affected installatio... Read more
- EPSS Score: %0.08
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-25248
An out-of-bounds read information disclosure vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security (10.0 SP1 and Services) could allow an attacker to disclose sensitive information about a named pipe... Read more
- EPSS Score: %0.15
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-25247
A DLL hijacking vulnerability Trend Micro HouseCall for Home Networks version 5.3.1063 and below could allow an attacker to use a malicious DLL to escalate privileges and perform arbitrary code execution. An attacker must already have user privileges on t... Read more
- EPSS Score: %0.09
- Published: Jan. 27, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-25246
An improper access control information disclosure vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG SP1, and Worry-Free Business Security could allow an unauthenticated user to create a bogus agent on an affected server that coul... Read more
- EPSS Score: %0.36
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25245
An improper access control vulnerability in Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain various pieces of settings informaiton.... Read more
Affected Products : worry-free_business_security- EPSS Score: %0.38
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25244
An improper access control vulnerability in Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain various pieces of configuration informaiton.... Read more
Affected Products : worry-free_business_security- EPSS Score: %0.38
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25243
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain patch level information.... Read more
- EPSS Score: %0.34
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25242
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain version and build information.... Read more
- EPSS Score: %0.34
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25241
A server-side request forgery (SSRF) information disclosure vulnerability in Trend Micro Apex One and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to locate online agents via a sweep.... Read more
- EPSS Score: %0.42
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25240
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain x64 agent hofitx information.... Read more
- EPSS Score: %0.34
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25239
An improper access control vulnerability in Trend Micro Apex One (on-prem), OfficeScan XG SP1, and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain information about x86 agent hotfixes.... Read more
- EPSS Score: %0.34
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25238
An improper access control information disclosure vulnerability in Trend Micro OfficeScan XG SP1 and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain information about an agent's managing port.... Read more
- EPSS Score: %0.38
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25237
An improper access control vulnerability in Trend Micro Apex One (on-prem) could allow an unauthenticated user to obtain information about the managing port used by agents.... Read more
- EPSS Score: %0.38
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25236
A server-side request forgery (SSRF) information disclosure vulnerability in Trend Micro OfficeScan XG SP1 and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to locate online agents via a specific sweep.... Read more
- EPSS Score: %0.42
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25235
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS) and OfficeScan XG SP1 could allow an unauthenticated user to obtain information about a content inspection configuration file.... Read more
- EPSS Score: %0.38
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25234
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain information about a specific notification configuration file.... Read more
- EPSS Score: %0.34
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25233
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain information about a specific configuration download file.... Read more
- EPSS Score: %0.34
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25232
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS) and OfficeScan XG SP1 could allow an unauthenticated user to obtain information about the SQL database.... Read more
- EPSS Score: %0.38
- Published: Feb. 04, 2021
- Modified: Nov. 21, 2024