Control Manager

Trend Micro · 28 CVEs

CVE-2021-25252
MEDIUM

Trend Micro's Virus Scan API (VSAPI) and Advanced Threat Scan Engine (ATSE) - are vulnerable to a memory exhaustion vul…

Mar 3, 2021

CVE-2019-14688
HIGH

Trend Micro has repackaged installers for several Trend Micro products that were found to utilize a version of an insta…

Feb 20, 2020

CVE-2018-10512
HIGH

A vulnerability in Trend Micro Control Manager (versions 6.0 and 7.0) could allow an attacker to manipulate a reverse p…

Aug 15, 2018

CVE-2018-10511
CRITICAL

A vulnerability in Trend Micro Control Manager (versions 6.0 and 7.0) could allow an attacker to conduct a server-side…

Aug 15, 2018

CVE-2018-10510
CRITICAL

A Directory Traversal Remote Code Execution vulnerability in Trend Micro Control Manager (versions 6.0 and 7.0) could a…

Aug 15, 2018

CVE-2018-3607
HIGH

XXXTreeNode method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could a…

Feb 9, 2018

CVE-2018-3606
HIGH

XXXStatusXXX, XXXSummary, TemplateXXX and XXXCompliance method SQL injection remote code execution (RCE) vulnerabilitie…

Feb 9, 2018

CVE-2018-3605
HIGH

TopXXX, ViolationXXX, and IncidentXXX method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro C…

Feb 9, 2018

CVE-2018-3604
HIGH

GetXXX method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow…

Feb 9, 2018

CVE-2018-3603
HIGH

A CGGIServlet SQL injection remote code execution (RCE) vulnerability in Trend Micro Control Manager 6.0 could allow a…

Feb 9, 2018

CVE-2018-3602
HIGH

An AdHocQuery_Processor SQL injection remote code execution (RCE) vulnerability in Trend Micro Control Manager 6.0 coul…

Feb 9, 2018

CVE-2018-3601
CRITICAL

A password hash usage authentication bypass vulnerability in Trend Micro Control Manager 6.0 could allow a remote attac…

Feb 9, 2018

CVE-2018-3600
MEDIUM

A external entity processing information disclosure (XXE) vulnerability in Trend Micro Control Manager 6.0 could allow…

Feb 9, 2018

CVE-2016-6220
HIGH

Information Disclosure vulnerability in the Dashboard and Error Pages in Trend Micro Control Manager SP3 6.0.

Aug 7, 2017

CVE-2017-11390
HIGH

XML external entity (XXE) processing vulnerability in Trend Micro Control Manager 6.0, if exploited, could lead to info…

Aug 2, 2017

CVE-2017-11389
CRITICAL

Directory traversal vulnerability in Trend Micro Control Manager 6.0 allows remote code execution by attackers able to…

Aug 2, 2017

CVE-2017-11388
HIGH

SQL Injection in Trend Micro Control Manager 6.0 causes Remote Code Execution when RestfulServiceUtility.NET.dll doesn'…

Aug 2, 2017

CVE-2017-11387
HIGH

Authentication Bypass in Trend Micro Control Manager 6.0 causes Information Disclosure when authentication validation i…

Aug 2, 2017

CVE-2017-11386
CRITICAL

SQL Injection in Trend Micro Control Manager 6.0 causes Remote Code Execution when executing opcode 0x4707 due to lack…

Aug 2, 2017

CVE-2017-11385
CRITICAL

SQL Injection in Trend Micro Control Manager 6.0 causes Remote Code Execution when executing opcode 0x6b1b due to lack…

Aug 2, 2017

CVE-2017-11384
CRITICAL

SQL Injection in Trend Micro Control Manager 6.0 causes Remote Code Execution when executing opcode 0x3b21 due to lack…

Aug 2, 2017

CVE-2017-11383
CRITICAL

SQL Injection in Trend Micro Control Manager 6.0 causes Remote Code Execution when executing opcode 0x1b07 due to lack…

Aug 2, 2017

CVE-2012-2998
HIGH

SQL injection vulnerability in the ad hoc query module in Trend Micro Control Manager (TMCM) before 5.5.0.1823 and 6.0…

Sep 28, 2012

CVE-2011-5001
HIGH

Stack-based buffer overflow in the CGenericScheduler::AddTask function in cmdHandlerRedAlertController.dll in CmdProces…

Dec 25, 2011

CVE-2007-0851
HIGH

Buffer overflow in the Trend Micro Scan Engine 8.000 and 8.300 before virus pattern file 4.245.00, as used in other pro…

Feb 8, 2007

Showing 1 to 25 of 28 CVEs