Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mobile security vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2022-41547
Mobile Security Framework (MobSF) v0.9.2 and below exists to contain a local file inclusion (LFI) vulnerability in the StaticAnalyzer/views.py script. This vulnerability allows malicious users to read arbitrary files via a crafted HTTP request.
Opensecurity Mobile Security Framework
5.8
CVSSv2
CVE-2016-3664
Trend Micro Mobile Security for iOS prior to 3.2.1188 does not verify the X.509 certificate of the mobile application login server, which allows man-in-the-middle malicious users to spoof this server and obtain sensitive information via a crafted certificate.
Trend Micro Mobile Security
4.3
CVSSv2
CVE-2016-6586
A security bypass vulnerability exists in Symantec Norton Mobile Security for Android prior to 3.16, which could let a malicious user conduct a man-in-the-middle via specially crafted JavaScript to add arbitrary URLs to the URL whitelist.
Symantec Norton Mobile Security
NA
CVE-2023-32521
A path traversal exists in a specific service dll of Trend Micro Mobile Security (Enterprise) 9.8 SP5 which could allow an unauthenticated remote malicious user to delete arbitrary files.
Trendmicro Mobile Security 9.8
NA
CVE-2023-32522
A path traversal exists in a specific dll of Trend Micro Mobile Security (Enterprise) 9.8 SP5 which could allow an authenticated remote malicious user to delete arbitrary files. Please note: an attacker must first obtain the ability to execute low-privileged code on the target sy...
Trendmicro Mobile Security 9.8
NA
CVE-2023-32523
Affected versions of Trend Micro Mobile Security (Enterprise) 9.8 SP5 contain some widgets that would allow a remote user to bypass authentication and potentially chain with other vulnerabilities. Please note: an attacker must first obtain the ability to execute low-privileged co...
Trendmicro Mobile Security 9.8
NA
CVE-2023-32524
Affected versions of Trend Micro Mobile Security (Enterprise) 9.8 SP5 contain some widgets that would allow a remote user to bypass authentication and potentially chain with other vulnerabilities. Please note: an attacker must first obtain the ability to execute low-privileged co...
Trendmicro Mobile Security 9.8
NA
CVE-2023-32525
Trend Micro Mobile Security (Enterprise) 9.8 SP5 contains widget vulnerabilities that could allow a remote malicious user to create arbitrary files on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target syste...
Trendmicro Mobile Security 9.8
NA
CVE-2023-32526
Trend Micro Mobile Security (Enterprise) 9.8 SP5 contains widget vulnerabilities that could allow a remote malicious user to create arbitrary files on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target syste...
Trendmicro Mobile Security 9.8
NA
CVE-2023-32527
Trend Micro Mobile Security (Enterprise) 9.8 SP5 contains vulnerable .php files that could allow a remote malicious user to execute arbitrary code on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system...
Trendmicro Mobile Security 9.8
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »