Skip to main content

Vendor archive

trend_micro CVEs

Beta · best-effort

108 CVEs tagged to vendor trend_micro37 Critical, 31 High, 39 Medium, 1 Low, 0 Unrated.

CVE-2016-5840

Published Jun 30, 2016

hotfix_upload.cgi in Trend Micro Deep Discovery Inspector (DDI) 3.7, 3.8 SP1 (3.81), and 3.8 SP2 (3.82) allows remote administrators to execute arbitrary code via shell metacharac…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2016-3664

Published May 23, 2016

Trend Micro Mobile Security for iOS before 3.2.1188 does not verify the X.509 certificate of the mobile application login server, which allows man-in-the-middle attackers to spoof…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2015-3326

Published May 14, 2015

Trend Micro ScanMail for Microsoft Exchange (SMEX) 10.2 before Hot Fix Build 3318 and 11.0 before Hot Fix Build 4180 creates session IDs for the web console using a random number…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-2998

Published Sep 28, 2012

SQL injection vulnerability in the ad hoc query module in Trend Micro Control Manager (TMCM) before 5.5.0.1823 and 6.0 before 6.0.0.1449 allows remote attackers to execute arbitra…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2011-5001

Published Dec 25, 2011

Stack-based buffer overflow in the CGenericScheduler::AddTask function in cmdHandlerRedAlertController.dll in CmdProcessor.exe in Trend Micro Control Manager 5.5 before Build 1613…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-2435

Published Dec 23, 2008

Use-after-free vulnerability in the Trend Micro HouseCall ActiveX control 6.51.0.1028 and 6.6.0.1278 in Housecall_ActiveX.dll allows remote attackers to execute arbitrary code via…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-2434

Published Dec 23, 2008

The Trend Micro HouseCall ActiveX control 6.51.0.1028 and 6.6.0.1278 in Housecall_ActiveX.dll allows remote attackers to download an arbitrary library file onto a client system vi…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-0014

Published Nov 17, 2008

Heap-based buffer overflow in an unspecified procedure in Trend Micro ServerProtect 5.7 and 5.58 allows remote attackers to execute arbitrary code via unknown vectors, possibly re…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-0013

Published Nov 17, 2008

Heap-based buffer overflow in an unspecified procedure in Trend Micro ServerProtect 5.7 and 5.58 allows remote attackers to execute arbitrary code via unknown vectors, possibly re…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-0012

Published Nov 17, 2008

Heap-based buffer overflow in an unspecified procedure in Trend Micro ServerProtect 5.7 and 5.58 allows remote attackers to execute arbitrary code via unknown vectors, possibly re…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-0074

Published Nov 17, 2008

Heap-based buffer overflow in an unspecified procedure in Trend Micro ServerProtect 5.7 and 5.58 allows remote attackers to execute arbitrary code via unknown vectors, possibly re…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-0073

Published Nov 17, 2008

Heap-based buffer overflow in an unspecified procedure in Trend Micro ServerProtect 5.7 and 5.58 allows remote attackers to execute arbitrary code via unknown vectors, possibly re…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-0072

Published Nov 17, 2008

Heap-based buffer overflow in an unspecified procedure in Trend Micro ServerProtect 5.7 and 5.58 allows remote attackers to execute arbitrary code via unknown vectors, possibly re…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-5269

Published Nov 17, 2008

Heap-based buffer overflow in an unspecified procedure in Trend Micro ServerProtect 5.7 and 5.58 allows remote attackers to execute arbitrary code via unknown vectors, probably re…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-5268

Published Nov 17, 2008

Unspecified vulnerability in Trend Micro ServerProtect 5.7 and 5.58 allows remote attackers to execute arbitrary code via vectors related to obtaining "administrative access to th…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-3862

Published Oct 23, 2008

Stack-based buffer overflow in CGI programs in the server in Trend Micro OfficeScan 7.3 Patch 4 build 1367 and other builds before 1374, and 8.0 SP1 Patch 1 before build 3110, all…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-4403

Published Oct 3, 2008

The CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 allow remote attackers to cause a denial of service (NULL p…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-4402

Published Oct 3, 2008

Multiple buffer overflows in CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 allow remote attackers to execute…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-3364

Published Jul 30, 2008

Buffer overflow in the ObjRemoveCtrl Class ActiveX control in OfficeScanRemoveCtrl.dll 7.3.0.1020 in Trend Micro OfficeScan Corp Edition (OSCE) Web-Deployment 7.0, 7.3 build 1343…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-25 of 108 CVEsPage 1 of 5