Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mobile security vulnerabilities and exploits
(subscribe to this query)
312
VMScore
CVE-2016-6585
A Denial of Service vulnerability exists in Symantec Norton Mobile Security for Android before 3.16, which could let a remote malicious user conduct a man-in-the-middle attack via specially crafted JavaScript.
Symantec Norton Mobile Security
187
VMScore
CVE-2016-6587
An Information Disclosure vulnerability exists in the mid.dat file stored on the SD card in Symantec Norton Mobile Security for Android prior to 3.16, which could let a local malicious user obtain sensitive information.
Symantec Norton Mobile Security
890
VMScore
CVE-2017-14078
SQL Injection vulnerabilities in Trend Micro Mobile Security (Enterprise) versions prior to 9.7 Patch 3 allow remote malicious users to execute arbitrary code on vulnerable installations.
Trendmicro Mobile Security 9.7
578
VMScore
CVE-2017-14079
Unrestricted file uploads in Trend Micro Mobile Security (Enterprise) versions prior to 9.7 Patch 3 allow remote malicious users to execute arbitrary code on vulnerable installations.
Trendmicro Mobile Security 9.7
668
VMScore
CVE-2017-14080
Authentication bypass vulnerability in Trend Micro Mobile Security (Enterprise) versions prior to 9.7 Patch 3 allows malicious users to access a specific part of the console using a blank password.
Trendmicro Mobile Security 9.7
516
VMScore
CVE-2016-3664
Trend Micro Mobile Security for iOS prior to 3.2.1188 does not verify the X.509 certificate of the mobile application login server, which allows man-in-the-middle malicious users to spoof this server and obtain sensitive information via a crafted certificate.
Trend Micro Mobile Security
NA
CVE-2023-41177
Reflected cross-site scripting (XSS) vulnerabilities in Trend Micro Mobile Security (Enterprise) could allow an exploit against an authenticated victim that visits a malicious link provided by an attacker. Please note, this vulnerability is similar to, but not identical to, CVE-2...
Trendmicro Mobile Security 9.8
NA
CVE-2022-41547
Mobile Security Framework (MobSF) v0.9.2 and below exists to contain a local file inclusion (LFI) vulnerability in the StaticAnalyzer/views.py script. This vulnerability allows malicious users to read arbitrary files via a crafted HTTP request.
Opensecurity Mobile Security Framework
NA
CVE-2023-35695
A remote attacker could leverage a vulnerability in Trend Micro Mobile Security (Enterprise) 9.8 SP5 to download a particular log file which may contain sensitive information regarding the product.
Trendmicro Mobile Security 9.8
NA
CVE-2023-41176
Reflected cross-site scripting (XSS) vulnerabilities in Trend Micro Mobile Security (Enterprise) could allow an exploit against an authenticated victim that visits a malicious link provided by an attacker. Please note, this vulnerability is similar to, but not identical to, CVE-2...
Trendmicro Mobile Security 9.8
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
SSRF
buffer overflow
CVE-2023-28952
CVE-2023-41822
CVE-2024-27956
CVE-2023-7028
CVE-2024-34447
CVE-2024-34460
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »