Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
officescan vulnerabilities and exploits
(subscribe to this query)
356
VMScore
CVE-2018-10509
A vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow a malicious user to exploit it via a Browser Refresh attack on vulnerable installations. An attacker must be using a AD logon user account in order to exploit this vulnerability.
Trendmicro Officescan 11.0
Trendmicro Officescan Xg
383
VMScore
CVE-2017-8801
Trend Micro OfficeScan 11.0 before SP1 CP 6325 (with Agent Module Build prior to 6152) and XG before CP 1352 has XSS via a crafted URI using a blocked website.
Trendmicro Officescan 12.0
Trendmicro Officescan 11.0
755
VMScore
CVE-2003-1341
The default installation of Trend Micro OfficeScan 3.0 up to and including 3.54 and 5.x allows remote malicious users to bypass authentication from cgiChkMasterPasswd.exe and gain access to the web management console via a direct request to cgiMasterPwd.exe.
Trend Micro Officescan 3.1.1
Trend Micro Officescan 3.13
Trend Micro Officescan 3.5
Trend Micro Officescan 3.0
Trend Micro Officescan 3.54
Trend Micro Officescan 3.11
Trend Micro Virus Buster 3.52
Trend Micro Virus Buster 3.53
Trend Micro Virus Buster 3.54
1 EDB exploit
890
VMScore
CVE-2018-3608
A vulnerability in Trend Micro Maximum Security's (Consumer) 2018 (versions 12.0.1191 and below) User-Mode Hooking (UMH) driver could allow an malicious user to create a specially crafted packet that could alter a vulnerable system in such a way that malicious code could be ...
Trendmicro Maximum Security
Trendmicro Antivirus \\+ Security
Trendmicro Internet Security
Trendmicro Premium Security
Trendmicro Officescan 12.0
Trendmicro Officescan 11.0
Trendmicro Officescan Monthly 12.0
Trendmicro Officescan Monthly 11.0
1 Github repository
614
VMScore
CVE-2017-14088
Memory Corruption Privilege Escalation vulnerabilities in Trend Micro OfficeScan 11.0 and XG allows local malicious users to execute arbitrary code and escalate privileges to resources normally reserved for the kernel on vulnerable installations by exploiting tmwfp.sys. An attack...
Trendmicro Officescan Xg 12.0
Trendmicro Officescan 11.0
890
VMScore
CVE-2008-3862
Stack-based buffer overflow in CGI programs in the server in Trend Micro OfficeScan 7.3 Patch 4 build 1367 and other builds prior to 1374, and 8.0 SP1 Patch 1 before build 3110, allows remote malicious users to execute arbitrary code via an HTTP POST request containing crafted fo...
Trend Micro Officescan 7.3
Trend Micro Officescan 8.0
890
VMScore
CVE-2007-3454
Stack-based buffer overflow in CGIOCommon.dll prior to 8.0.0.1042 in Trend Micro OfficeScan Corporate Edition 8.0 allows remote malicious users to execute arbitrary code via long crafted requests, as demonstrated using a long session cookie to unspecified CGI programs that use th...
Trend Micro Officescan 8.0
Trend Micro Officescan 7.3
570
VMScore
CVE-2006-5211
Trend Micro OfficeScan 6.0 in Client/Server/Messaging (CSM) Suite for SMB 2.0 prior to 6.0.0.1385, and OfficeScan Corporate Edition (OSCE) 6.5 prior to 6.5.0.1418, 7.0 prior to 7.0.0.1257, and 7.3 prior to 7.3.0.1053 allow remote malicious users to remove OfficeScan clients via a...
Trend Micro Officescan Corporate Edition 6.5
Trend Micro Officescan Corporate Edition 7.0
Trend Micro Officescan Corporate Edition 7.3
445
VMScore
CVE-2010-0564
Buffer overflow in Trend Micro URL Filtering Engine (TMUFE) in OfficeScan 8.0 before SP1 Patch 5 - Build 3510, possibly tmufeng.dll prior to 3.0.0.1029, allows malicious users to cause a denial of service (crash or OfficeScan hang) via unspecified vectors. NOTE: it is likely that...
Trendmicro Officescan
410
VMScore
CVE-2021-36742
A improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG and Worry-Free Business Security 10.0 SP1 allows a local malicious user to escalate privileges on affected installations. Please note: an attacker must first obtain the ability...
Trendmicro Officescan Xg
Trendmicro Officescan Business Security 10.0
Trendmicro Apex One 2019
Trendmicro Worry-free Business Security 10.0
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
CVE-2006-4304
CVE-2023-26603
CVE-2024-28327
CVE-2023-50363
CVE-2024-21905
template injection
CVE-2024-3400
cross-site request forgery
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »