Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.8
CVE-2018-10354EPSS 13%
A command injection remote command execution vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow a remote attacker to execute arbit…
Email Encryption Gateway
after 5.5
HIGH 8.8
CVE-2018-10356EPSS 10%
A SQL injection remote code execution vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to execute arbitrary SQL stat…
Email Encryption Gateway
after 5.5
HIGH 8.8
CVE-2018-10357EPSS 73%
A directory traversal vulnerability in Trend Micro Endpoint Application Control 2.0 could allow a remote attacker to execute arbitrary code on vulner…
Endpoint Application Control
Mitigation only
HIGH 7.0
CVE-2018-10355
An authentication weakness vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to recover user passwords on vulnerable …
Email Encryption Gateway
after 5.5
MEDIUM 6.5
CVE-2018-10353
A SQL injection information disclosure vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow a remote attacker to disclose sensitive …
Email Encryption Gateway
after 5.5
CRITICAL 9.8
CVE-2018-6228EPSS 10%
A SQL injection vulnerability in a Trend Micro Email Encryption Gateway 5.5 policy script could allow an attacker to execute SQL commands to upload a…
Email Encryption Gateway
Patch available
CRITICAL 9.8
CVE-2018-6229EPSS 10%
A SQL injection vulnerability in an Trend Micro Email Encryption Gateway 5.5 edit policy script could allow an attacker to execute SQL commands to up…
Email Encryption Gateway
Patch available
CRITICAL 9.8
CVE-2018-6231EPSS 7%
A server auth command injection authentication bypass vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.3 and below could …
Smart Protection Server
after 3.3
MEDIUM 6.8
CVE-2018-6230
A SQL injection vulnerability in an Trend Micro Email Encryption Gateway 5.5 search configuration script could allow an attacker to execute SQL comma…
Email Encryption Gateway
Patch available
MEDIUM 5.4
CVE-2018-6226
Reflected cross-site scripting (XSS) vulnerabilities in two Trend Micro Email Encryption Gateway 5.5 configuration files could allow an attacker to i…
Email Encryption Gateway
Patch available
MEDIUM 5.4
CVE-2018-6227
A stored cross-site scripting (XSS) vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to inject client-side scripts i…
Email Encryption Gateway
Patch available
CRITICAL 9.8
CVE-2018-6220EPSS 10%
An arbitrary file write vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to inject arbitrary data, which may lead to…
Email Encryption Gateway
Patch available
CRITICAL 9.8
CVE-2018-6223EPSS 10%
A missing authentication for appliance registration vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to manipulate t…
Email Encryption Gateway
Patch available
HIGH 8.8
CVE-2018-6224
A lack of cross-site request forgery (CSRF) protection vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to submit au…
Email Encryption Gateway
Patch available
HIGH 8.1
CVE-2018-6221EPSS 6%
An unvalidated software update vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow a man-in-the-middle attacker to tamper with an u…
Email Encryption Gateway
Patch available
HIGH 7.8
CVE-2018-6222
Arbitrary logs location in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to change location of log files and be manipulated to exe…
Email Encryption Gateway
Patch available
MEDIUM 6.5
CVE-2018-6219
An Insecure Update via HTTP vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to eavesdrop and tamper with certain ty…
Email Encryption Gateway
No fix yet
HIGH 8.1
CVE-2018-3609EPSS 21%
A vulnerability in the Trend Micro InterScan Messaging Security Virtual Appliance 9.0 and 9.1 management portal could allow an unauthenticated user t…
Interscan Messaging Security Virtual Appliance
No fix yet
HIGH 7.0
CVE-2018-6218
A DLL Hijacking vulnerability in Trend Micro's User-Mode Hooking Module (UMH) could allow an attacker to run arbitrary code on a vulnerable system.
Deep Security
Mitigation only
HIGH 8.8
CVE-2018-3606EPSS 49%
XXXStatusXXX, XXXSummary, TemplateXXX and XXXCompliance method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manag…
Control Manager
Patch available
HIGH 8.8
CVE-2018-3607EPSS 14%
XXXTreeNode method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote attacker to exec…
Control Manager
Patch available
CRITICAL 9.8
CVE-2018-3601
A password hash usage authentication bypass vulnerability in Trend Micro Control Manager 6.0 could allow a remote attacker to bypass authentication o…
Control Manager
Patch available
HIGH 8.8
CVE-2018-3602EPSS 8%
An AdHocQuery_Processor SQL injection remote code execution (RCE) vulnerability in Trend Micro Control Manager 6.0 could allow a remote attacker to e…
Control Manager
Patch available
HIGH 8.8
CVE-2018-3603EPSS 8%
A CGGIServlet SQL injection remote code execution (RCE) vulnerability in Trend Micro Control Manager 6.0 could allow a remote attacker to execute arb…
Control Manager
Patch available
HIGH 8.8
CVE-2018-3604EPSS 68%
GetXXX method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote attacker to execute a…
Control Manager
Patch available
HIGH 8.8
CVE-2018-3605EPSS 20%
TopXXX, ViolationXXX, and IncidentXXX method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow…
Control Manager
Patch available
MEDIUM 6.5
CVE-2018-3600
A external entity processing information disclosure (XXE) vulnerability in Trend Micro Control Manager 6.0 could allow a remote attacker to disclose …
Control Manager
Patch available
CRITICAL 9.8
CVE-2017-14094EPSS 19%
A vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an attacker to perform remote command executio…
Smart Protection Server
after 3.2
CRITICAL 9.8
CVE-2017-14097EPSS 13%
An improper access control vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an attacker to decryp…
Smart Protection Server
after 3.2
HIGH 8.8
CVE-2017-11398EPSS 8%
A session hijacking via log disclosure vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an unauth…
Smart Protection Server
after 3.2