Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
trendmicro control manager 6.0 vulnerabilities and exploits
(subscribe to this query)
578
VMScore
CVE-2018-3605
TopXXX, ViolationXXX, and IncidentXXX method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote malicious user to execute arbitrary code on vulnerable installations.
Trendmicro Control Manager 6.0
578
VMScore
CVE-2018-3606
XXXStatusXXX, XXXSummary, TemplateXXX and XXXCompliance method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote malicious user to execute arbitrary code on vulnerable installations.
Trendmicro Control Manager 6.0
578
VMScore
CVE-2018-3607
XXXTreeNode method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote malicious user to execute arbitrary code on vulnerable installations.
Trendmicro Control Manager 6.0
578
VMScore
CVE-2017-11388
SQL Injection in Trend Micro Control Manager 6.0 causes Remote Code Execution when RestfulServiceUtility.NET.dll doesn't properly validate user provided strings before constructing SQL queries. Formerly ZDI-CAN-4639 and ZDI-CAN-4638.
Trendmicro Control Manager 6.0
570
VMScore
CVE-2018-10511
A vulnerability in Trend Micro Control Manager (versions 6.0 and 7.0) could allow an malicious user to conduct a server-side request forgery (SSRF) attack on vulnerable installations.
Trendmicro Control Manager 6.0
Trendmicro Control Manager 7.0
445
VMScore
CVE-2018-10512
A vulnerability in Trend Micro Control Manager (versions 6.0 and 7.0) could allow an malicious user to manipulate a reverse proxy .dll on vulnerable installations, which may lead to a denial of server (DoS).
Trendmicro Control Manager 7.0
Trendmicro Control Manager 6.0
445
VMScore
CVE-2016-6220
Information Disclosure vulnerability in the Dashboard and Error Pages in Trend Micro Control Manager SP3 6.0.
Trendmicro Control Manager 6.0
445
VMScore
CVE-2017-11390
XML external entity (XXE) processing vulnerability in Trend Micro Control Manager 6.0, if exploited, could lead to information disclosure. Formerly ZDI-CAN-4706.
Trendmicro Control Manager 6.0
445
VMScore
CVE-2017-11387
Authentication Bypass in Trend Micro Control Manager 6.0 causes Information Disclosure when authentication validation is not done for functionality that can change debug logging level. Formerly ZDI-CAN-4512.
Trendmicro Control Manager 6.0
356
VMScore
CVE-2018-3600
A external entity processing information disclosure (XXE) vulnerability in Trend Micro Control Manager 6.0 could allow a remote malicious user to disclose sensitive information on vulnerable installations.
Trendmicro Control Manager 6.0
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49223
CVE-2024-0044
information disclosure
CVE-2024-35753
HTML injection
CVE-2024-21306
CVE-2024-35733
SQL injection
CVE-2024-35732
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2