CVE-2019-9488
11.09.2019, 18:15
Trend Micro Deep Security Manager (10.x, 11.x) and Vulnerability Protection (2.0) are vulnerable to a XML External Entity Attack. However, for the attack to be possible, the attacker must have root/admin access to a protected host which is authorized to communicate with the Deep Security Manager (DSM).Enginsight
Vendor | Product | Version |
---|---|---|
trendmicro | deep_security_manager | 10.0 |
trendmicro | deep_security_manager | 10.0:u1 |
trendmicro | deep_security_manager | 10.0:u10 |
trendmicro | deep_security_manager | 10.0:u11 |
trendmicro | deep_security_manager | 10.0:u12 |
trendmicro | deep_security_manager | 10.0:u13 |
trendmicro | deep_security_manager | 10.0:u14 |
trendmicro | deep_security_manager | 10.0:u15 |
trendmicro | deep_security_manager | 10.0:u16 |
trendmicro | deep_security_manager | 10.0:u17 |
trendmicro | deep_security_manager | 10.0:u18 |
trendmicro | deep_security_manager | 10.0:u19 |
trendmicro | deep_security_manager | 10.0:u2 |
trendmicro | deep_security_manager | 10.0:u3 |
trendmicro | deep_security_manager | 10.0:u4 |
trendmicro | deep_security_manager | 10.0:u5 |
trendmicro | deep_security_manager | 10.0:u6 |
trendmicro | deep_security_manager | 10.0:u7 |
trendmicro | deep_security_manager | 10.0:u8 |
trendmicro | deep_security_manager | 10.0:u9 |
trendmicro | deep_security_manager | 11.0 |
trendmicro | deep_security_manager | 11.0:u1 |
trendmicro | deep_security_manager | 11.0:u2 |
trendmicro | deep_security_manager | 11.0:u3 |
trendmicro | deep_security_manager | 11.0:u4 |
trendmicro | deep_security_manager | 11.0:u5 |
trendmicro | deep_security_manager | 11.0:u6 |
trendmicro | deep_security_manager | 11.0:u7 |
trendmicro | deep_security_manager | 11.3 |
trendmicro | vulnerability_protection | 2.0 |
𝑥
= Vulnerable software versions