Home/Product/trendmicro mobile security
Product

trendmicro mobile security

26 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-41178
all versions
Reflected cross-site scripting (XSS) vulnerabilities in Trend Micro Mobile Security (Enterprise) could allow an exploit against an
6.1MEDIUM
CVE-2023-41177
all versions
Reflected cross-site scripting (XSS) vulnerabilities in Trend Micro Mobile Security (Enterprise) could allow an exploit against an
6.1MEDIUM
CVE-2023-41176
all versions
Reflected cross-site scripting (XSS) vulnerabilities in Trend Micro Mobile Security (Enterprise) could allow an exploit against an
6.1MEDIUM
CVE-2023-35695
all versions
A remote attacker could leverage a vulnerability in Trend Micro Mobile Security (Enterprise) 9.8 SP5 to download a particular log
7.5HIGH
CVE-2023-32528
all versions
Trend Micro Mobile Security (Enterprise) 9.8 SP5 contains vulnerable .php files that could allow a remote attacker to execute arbi
8.8HIGH
CVE-2023-32527
all versions
Trend Micro Mobile Security (Enterprise) 9.8 SP5 contains vulnerable .php files that could allow a remote attacker to execute arbi
8.8HIGH
CVE-2023-32526
all versions
Trend Micro Mobile Security (Enterprise) 9.8 SP5 contains widget vulnerabilities that could allow a remote attacker to create arbi
6.5MEDIUM
CVE-2023-32525
all versions
Trend Micro Mobile Security (Enterprise) 9.8 SP5 contains widget vulnerabilities that could allow a remote attacker to create arbi
6.5MEDIUM
CVE-2023-32524
all versions
Affected versions of Trend Micro Mobile Security (Enterprise) 9.8 SP5 contain some widgets that would allow a remote user to bypas
8.8HIGH
CVE-2023-32523
all versions
Affected versions of Trend Micro Mobile Security (Enterprise) 9.8 SP5 contain some widgets that would allow a remote user to bypas
8.8HIGH
CVE-2023-32522
all versions
A path traversal exists in a specific dll of Trend Micro Mobile Security (Enterprise) 9.8 SP5 which could allow an authenticated r
8.1HIGH
CVE-2023-32521
all versions
A path traversal exists in a specific service dll of Trend Micro Mobile Security (Enterprise) 9.8 SP5 which could allow an unauthe
9.1CRITICAL
CVE-2022-40980
all versions
A potential unathenticated file deletion vulnerabilty on Trend Micro Mobile Security for Enterprise 9.8 SP5 could allow an attacke
9.1CRITICAL
CVE-2020-10193
< 1294
ESET Archive Support Module before 1294 allows virus-detection bypass via crafted RAR Compression Information in an archive. This
7.5HIGH
CVE-2020-10180
< 1294
The ESET AV parsing engine allows virus-detection bypass via a crafted BZ2 Checksum field in an archive. This affects versions bef
9.8CRITICAL
CVE-2019-14688
all versions
Trend Micro has repackaged installers for several Trend Micro products that were found to utilize a version of an install package
7.0HIGH
CVE-2020-9264
< 1296
ESET Archive Support Module before 1296 allows virus-detection bypass via a crafted Compression Information Field in a ZIP archive
5.5MEDIUM
CVE-2019-19690
<= 10.3.1
Trend Micro Mobile Security for Android (Consumer) versions 10.3.1 and below on Android 8.0+ has an issue in which an attacker cou
9.8CRITICAL
CVE-2017-14082
<= 9.7
An uninitialized pointer information disclosure vulnerability in Trend Micro Mobile Security (Enterprise) versions 9.7 and below c
7.5HIGH
CVE-2017-14081
<= 9.7
Proxy command injection vulnerabilities in Trend Micro Mobile Security (Enterprise) versions before 9.7 Patch 3 allow remote attac
8.8HIGH
CVE-2017-14080
all versions
Authentication bypass vulnerability in Trend Micro Mobile Security (Enterprise) versions before 9.7 Patch 3 allows attackers to ac
9.8CRITICAL
CVE-2017-14079
all versions
Unrestricted file uploads in Trend Micro Mobile Security (Enterprise) versions before 9.7 Patch 3 allow remote attackers to execut
8.8HIGH
CVE-2017-14078
all versions
SQL Injection vulnerabilities in Trend Micro Mobile Security (Enterprise) versions before 9.7 Patch 3 allow remote attackers to ex
9.8CRITICAL
CVE-2016-9319
<= 9.7
There is Missing SSL Certificate Validation in the Trend Micro Enterprise Mobile Security Android Application before 9.7.1193, aka
5.9MEDIUM
CVE-2016-3664
<= 3.1
Trend Micro Mobile Security for iOS before 3.2.1188 does not verify the X.509 certificate of the mobile application login server,
7.4HIGH
CVE-2010-0113
all versions
The Symantec Norton Mobile Security application 1.0 Beta for Android records setup details, possibly including wipe/lock credentia
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin