Skip to content
Noroxi

trendmicro records

575 published records for vendor trendmicro.

All records

575 records
  • CVE-2025-54948
    76This week

    A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious

    CriticalCVSS 9.8KEVWeaponizedEPSS 22%

    trendmicro · apex oneAug 5, 2025

  • CVE-2022-26871
    75This week

    An arbitrary file upload vulnerability in Trend Micro Apex Central could allow an unauthenticated remote attacker to upload an arbitrary fil

    CriticalCVSS 9.8KEVWeaponizedEPSS 19%

    trendmicro · apex centralMar 29, 2022

  • CVE-2020-8599
    73This week

    Trend Micro Apex One (2019) and OfficeScan XG server contain a vulnerable EXE file that could allow a remote attacker to write arbitrary dat

    CriticalCVSS 9.8KEVWeaponizedEPSS 12%

    trendmicro · apex oneMar 17, 2020

  • CVE-2019-18187
    68This week

    Trend Micro OfficeScan versions 11.0 and XG (12.0) could be exploited by an attacker utilizing a directory traversal vulnerability to extrac

    HighCVSS 7.5KEVWeaponizedEPSS 25%

    trendmicro · officescanOct 28, 2019

  • CVE-2020-8467
    68This week

    A migration tool component of Trend Micro Apex One (2019) and OfficeScan XG contains a vulnerability which could allow remote attackers to e

    HighCVSS 8.8KEVWeaponizedEPSS 11%

    trendmicro · apex oneMar 17, 2020

  • CVE-2016-7552
    67This week

    On the Trend Micro Threat Discovery Appliance 2.6.1062r1, directory traversal when processing a session_id cookie allows a remote, unauthent

    CriticalCVSS 9.8WeaponizedEPSS 93%

    trendmicro · threat discovery applianceApr 12, 2017

  • CVE-2016-7547
    67This week

    A command execution flaw on the Trend Micro Threat Discovery Appliance 2.6.1062r1 exists with the timezone parameter in the admin_sys_time.c

    CriticalCVSS 9.8WeaponizedEPSS 93%

    trendmicro · threat discovery applianceApr 12, 2017

  • CVE-2020-8468
    67This week

    Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) agents are affected by a content validation esc

    HighCVSS 8.8KEVWeaponizedEPSS 6%

    trendmicro · apex oneMar 17, 2020

  • CVE-2021-36741
    66This week

    An improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG, and Worry-Free Business Security 1

    HighCVSS 8.8KEVWeaponizedEPSS 5%

    trendmicro · officescanJul 29, 2021

  • CVE-2020-24557
    62This week

    A vulnerability in Trend Micro Apex One and Worry-Free Business Security 10.0 SP1 on Microsoft Windows may allow an attacker to manipulate a

    HighCVSS 7.8KEVWeaponizedEPSS 3%

    microsoft · windowsSep 1, 2020

  • CVE-2020-8605
    61This week

    A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to execute arbitrary code on affected

    HighCVSS 8.8WeaponizedEPSS 88%

    trendmicro · interscan web security virtual applianceMay 27, 2020

  • CVE-2020-28578
    61This week

    A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an unauthenticated, remote attacker to send a sp

    CriticalCVSS 9.8No exploitEPSS 73%

    trendmicro · interscan web security virtual applianceNov 18, 2020

  • CVE-2020-8606
    61This week

    A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to bypass authentication on affected

    CriticalCVSS 9.8WeaponizedEPSS 73%

    trendmicro · interscan web security virtual applianceMay 27, 2020

  • CVE-2021-36742
    61This week

    A improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG and Worry-Free Business Security 10.

    HighCVSS 7.8KEVWeaponizedEPSS 1%

    trendmicro · officescanJul 29, 2021

  • Proxy command injection vulnerability in Trend Micro OfficeScan 11 and XG (12) allows remote attackers to execute arbitrary code on vulnerab

    CriticalCVSS 9.8WeaponizedEPSS 67%

    trendmicro · officescanAug 3, 2017

  • A vulnerability in the 3rd party AV uninstaller module contained in Trend Micro Apex One (on-prem and SaaS), Worry-Free Business Security an

    HighCVSS 7.2KEVWeaponizedEPSS 4%

    trendmicro · apex oneSep 19, 2023

  • Improper validation of some components used by the rollback mechanism in Trend Micro Apex One and Trend Micro Apex One as a Service clients

    HighCVSS 7.2KEVWeaponizedEPSS 3%

    trendmicro · apex oneSep 19, 2022

  • A command injection vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2, with the improved password hashing method

    CriticalCVSS 9.8No exploitEPSS 64%

    trendmicro · interscan web security virtual applianceDec 17, 2020

  • A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to disclose sensitive informatoin on

    HighCVSS 7.5WeaponizedEPSS 90%

    trendmicro · interscan web security virtual applianceMay 27, 2020

  • A path traversal exists in a specific service dll of Trend Micro Mobile Security (Enterprise) 9.8 SP5 which could allow an unauthenticated r

    CriticalCVSS 9.1No exploitEPSS 67%

    trendmicro · mobile securityJun 26, 2023

  • A directory traversal vulnerability in the Apex One (on-premise) server could allow a pre-authenticated local attacker to modify a key table

    MediumCVSS 6.7KEVWeaponizedEPSS 1%

    trendmicro · apex oneMay 21, 2026

  • GetXXX method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote attacker to

    HighCVSS 8.8No exploitEPSS 68%

    trendmicro · control managerFeb 9, 2018

  • A directory traversal vulnerability in Trend Micro Endpoint Application Control 2.0 could allow a remote attacker to execute arbitrary code

    HighCVSS 8.8No exploitEPSS 65%

    trendmicro · endpoint application controlMay 23, 2018

  • Proxy command injection vulnerability in Trend Micro InterScan Messaging Virtual Appliance 9.0 and 9.1 allows remote attackers to execute ar

    HighCVSS 8.8WeaponizedEPSS 62%

    trendmicro · interscan messaging security virtual applianceAug 3, 2017

  • A file upload vulnerability in exists in Trend Micro Apex One server build 11110.

    CriticalCVSS 9.1No exploitEPSS 60%

    trendmicro · apex oneJan 31, 2023