356
VMScore

CVE-2019-9488

Published: 11/09/2019 Updated: 13/09/2019
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 4.9 | Impact Score: 3.6 | Exploitability Score: 1.2
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Trend Micro Deep Security Manager (10.x, 11.x) and Vulnerability Protection (2.0) are vulnerable to a XML External Entity Attack. However, for the attack to be possible, the attacker must have root/admin access to a protected host which is authorized to communicate with the Deep Security Manager (DSM).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

trendmicro vulnerability protection 2.0

trendmicro deep security manager 10.0

trendmicro deep security manager 11.0

trendmicro deep security manager 11.3