Trendmicro Interscan Web Security Suite vulnerabilities
2 known vulnerabilities affecting trendmicro/interscan_web_security_suite.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2009-0612MEDIUMCVSS 4.3v2.5v3.12009-02-17
CVE-2009-0612 [MEDIUM] CWE-200 CVE-2009-0612: Trend Micro InterScan Web Security Virtual Appliance (IWSVA) 3.x and InterScan Web Security Suite (I
Trend Micro InterScan Web Security Virtual Appliance (IWSVA) 3.x and InterScan Web Security Suite (IWSS) 3.x, when basic authorization is enabled on the standalone proxy, forwards the Proxy-Authorization header from Windows Media Player, which allows remote web servers to obtain credentials by offering a media stream and then capturing this header.
nvd
CVE-2009-0613MEDIUMCVSS 6.0v3.12009-02-17
CVE-2009-0613 [MEDIUM] CWE-264 CVE-2009-0613: Trend Micro InterScan Web Security Suite (IWSS) 3.1 before build 1237 allows remote authenticated Au
Trend Micro InterScan Web Security Suite (IWSS) 3.1 before build 1237 allows remote authenticated Auditor and Report Only users to bypass intended permission settings, and modify the system configuration, via requests to unspecified JSP pages.
nvd