Trend Micro Worry-Free Business Security 9.0 Service Pack 3

CPE Details

Trend Micro Worry-Free Business Security 9.0 Service Pack 3
9.0
2020-04-01
11h50 +00:00
2020-04-01
11h50 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:trendmicro:worry-free_business_security:9.0:sp3:*:*:*:*:*:*

Informations

Vendor

trendmicro

Product

worry-free_business_security

Version

9.0

Update

sp3

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-8468 2020-03-18 00h30 +00:00 Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) agents are affected by a content validation escape vulnerability which could allow an attacker to manipulate certain agent client components. An attempted attack requires user authentication.
8.8
High
CVE-2020-8600 2020-03-17 23h30 +00:00 Trend Micro Worry-Free Business Security (9.0, 9.5, 10.0) is affected by a directory traversal vulnerability that could allow an attacker to manipulate a key file to bypass authentication.
9.8
Critical
CVE-2020-8470 2020-03-17 23h30 +00:00 Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) server contains a vulnerable service DLL file that could allow an attacker to delete any file on the server with SYSTEM level privileges. Authentication is not required to exploit this vulnerability.
7.5
High
CVE-2020-8598 2020-03-17 23h30 +00:00 Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) server contains a vulnerable service DLL file that could allow a remote attacker to execute arbitrary code on affected installations with SYSTEM level privileges. Authentication is not required to exploit this vulnerability.
9.8
Critical
CVE-2016-1223 2016-06-18 23h00 +00:00 Directory traversal vulnerability in Trend Micro Office Scan 11.0, Worry-Free Business Security Service 5.x, and Worry-Free Business Security 9.0 allows remote attackers to read arbitrary files via unspecified vectors.
5.3
Medium
CVE-2016-1224 2016-06-18 23h00 +00:00 CRLF injection vulnerability in Trend Micro Worry-Free Business Security Service 5.x and Worry-Free Business Security 9.0 allows remote attackers to inject arbitrary HTTP headers and conduct cross-site scripting (XSS) attacks via unspecified vectors.
6.1
Medium