Trendmicro Im Security vulnerabilities
2 known vulnerabilities affecting trendmicro/im_security.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2021-31520HIGHCVSS 8.1v1.6v1.6.52021-05-10
CVE-2021-31520 [HIGH] CWE-287 CVE-2021-31520: A weak session token authentication bypass vulnerability in Trend Micro IM Security 1.6 and 1.6.5 co
A weak session token authentication bypass vulnerability in Trend Micro IM Security 1.6 and 1.6.5 could allow an remote attacker to guess currently logged-in administrators' session session token in order to gain access to the product's web management interface.
nvd
CVE-2019-14688HIGHCVSS 7.0v1.6.52020-02-20
CVE-2019-14688 [HIGH] CWE-427 CVE-2019-14688: Trend Micro has repackaged installers for several Trend Micro products that were found to utilize a
Trend Micro has repackaged installers for several Trend Micro products that were found to utilize a version of an install package that had a DLL hijack vulnerability that could be exploited during a new product installation. The vulnerability was found to ONLY be exploitable during an initial product installation by an authorized user. The attacker mus
nvd