Home/Product/trendmicro worry free business security
Product

trendmicro worry free business security

59 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-49154
all versions
An insecure access control vulnerability in Trend Micro Apex One and Trend Micro Worry-Free Business Security could allow a local
8.7HIGH
CVE-2023-41179
all versions
A vulnerability in the 3rd party AV uninstaller module contained in Trend Micro Apex One (on-prem and SaaS), Worry-Free Business S
7.2HIGH
CVE-2022-36336
all versions
A link following vulnerability in the scanning function of Trend Micro Apex One and Worry-Free Business Security agents could allo
7.8HIGH
CVE-2022-24680
all versions
A security link following local privilege escalation vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Service, Tre
7.8HIGH
CVE-2022-24679
all versions
A security link following local privilege escalation vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Service, Tre
7.8HIGH
CVE-2022-24678
all versions
An security agent resource exhaustion denial-of-service vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Service,
7.5HIGH
CVE-2022-23805
all versions
A security out-of-bounds read information disclosure vulnerability in Trend Micro Worry-Free Business Security Server could allow
7.1HIGH
CVE-2021-45442
all versions
A link following denial-of-service vulnerability in Trend Micro Worry-Free Business Security (on prem only) could allow a local at
7.1HIGH
CVE-2021-45441
all versions
A origin validation error vulnerability in Trend Micro Apex One (on-prem and SaaS) could allow a local attacker drop and manipulat
7.8HIGH
CVE-2021-45440
all versions
A unnecessary privilege vulnerability in Trend Micro Apex One and Trend Micro Worry-Free Business Security 10.0 SP1 (on-prem versi
7.8HIGH
CVE-2021-45231
all versions
A link following privilege escalation vulnerability in Trend Micro Apex One (on-prem and SaaS) and Trend Micro Worry-Free Business
7.8HIGH
CVE-2021-44024
all versions
A link following denial-of-service vulnerability in Trend Micro Apex One (on-prem and SaaS) and Trend Micro Worry-Free Business Se
7.1HIGH
CVE-2021-44021
all versions
An unnecessary privilege vulnerability in Trend Micro Worry-Free Business Security 10.0 SP1 could allow a local attacker to escala
7.8HIGH
CVE-2021-44020
all versions
An unnecessary privilege vulnerability in Trend Micro Worry-Free Business Security 10.0 SP1 could allow a local attacker to escala
7.8HIGH
CVE-2021-44019
all versions
An unnecessary privilege vulnerability in Trend Micro Worry-Free Business Security 10.0 SP1 could allow a local attacker to escala
7.8HIGH
CVE-2021-42108
all versions
Unnecessary privilege vulnerabilities in the Web Console of Trend Micro Apex One, Apex One as a Service and Worry-Free Business Se
7.8HIGH
CVE-2021-42107
all versions
Unnecessary privilege vulnerabilities in Trend Micro Apex One, Apex One as a Service, Worry-Free Business Security 10.0 SP1 and Wo
7.8HIGH
CVE-2021-42106
all versions
Unnecessary privilege vulnerabilities in Trend Micro Apex One, Apex One as a Service, Worry-Free Business Security 10.0 SP1 and Wo
7.8HIGH
CVE-2021-42105
all versions
Unnecessary privilege vulnerabilities in Trend Micro Apex One, Apex One as a Service, Worry-Free Business Security 10.0 SP1 and Wo
7.8HIGH
CVE-2021-42104
all versions
Unnecessary privilege vulnerabilities in Trend Micro Apex One, Apex One as a Service, Worry-Free Business Security 10.0 SP1 and Wo
7.8HIGH
CVE-2021-42012
all versions
A stack-based buffer overflow vulnerability in Trend Micro Apex One, Apex One as a Service and Worry-Free Business Security 10.0 S
7.8HIGH
CVE-2021-23139
all versions
A null pointer vulnerability in Trend Micro Apex One and Worry-Free Business Security 10.0 SP1 could allow an attacker to crash th
7.5HIGH
CVE-2021-3848
all versions
An arbitrary file creation by privilege escalation vulnerability in Trend Micro Apex One, Apex One as a Service, Worry-Free Busine
5.5MEDIUM
CVE-2021-36742
all versions
A improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG and Worry-Free Business Se
7.8HIGH
CVE-2021-36741
all versions
An improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG, and Worry-Free Business
8.8HIGH
CVE-2021-32463
all versions
An incorrect permission assignment denial-of-service vulnerability in Trend Micro Apex One, Apex One as a Service (SaaS), Worry-Fr
7.8HIGH
CVE-2021-25252
all versions
Trend Micro's Virus Scan API (VSAPI) and Advanced Threat Scan Engine (ATSE) - are vulnerable to a memory exhaustion vulnerability
5.5MEDIUM
CVE-2021-25249
all versions
An out-of-bounds write information disclosure vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Wor
7.8HIGH
CVE-2021-25248
all versions
An out-of-bounds read information disclosure vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worr
5.5MEDIUM
CVE-2021-25246
all versions
An improper access control information disclosure vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG SP1,
6.5MEDIUM
CVE-2021-25245
all versions
An improper access control vulnerability in Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain va
5.3MEDIUM
CVE-2021-25244
all versions
An improper access control vulnerability in Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain va
5.3MEDIUM
CVE-2021-25243
all versions
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Se
5.3MEDIUM
CVE-2021-25242
all versions
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Se
5.3MEDIUM
CVE-2021-25241
all versions
A server-side request forgery (SSRF) information disclosure vulnerability in Trend Micro Apex One and Worry-Free Business Security
5.3MEDIUM
CVE-2021-25240
all versions
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Se
5.3MEDIUM
CVE-2021-25239
all versions
An improper access control vulnerability in Trend Micro Apex One (on-prem), OfficeScan XG SP1, and Worry-Free Business Security 10
5.3MEDIUM
CVE-2021-25238
all versions
An improper access control information disclosure vulnerability in Trend Micro OfficeScan XG SP1 and Worry-Free Business Security
5.3MEDIUM
CVE-2021-25236
all versions
A server-side request forgery (SSRF) information disclosure vulnerability in Trend Micro OfficeScan XG SP1 and Worry-Free Business
5.3MEDIUM
CVE-2021-25234
all versions
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Se
5.3MEDIUM
CVE-2021-25233
all versions
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Se
5.3MEDIUM
CVE-2021-25231
all versions
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Se
5.3MEDIUM
CVE-2021-25228
all versions
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Se
5.3MEDIUM
CVE-2020-28574
all versions
A unauthenticated path traversal arbitrary remote file deletion vulnerability in Trend Micro Worry-Free Business Security 10 SP1 c
7.5HIGH
CVE-2020-24559
all versions
A vulnerability in Trend Micro Apex One, Worry-Free Business Security 10.0 SP1 and Worry-Free Business Security Services on macOS
7.8HIGH
CVE-2020-24558
all versions
A vulnerability in an Trend Micro Apex One, Worry-Free Business Security 10.0 SP1 and Worry-Free Business Security Services dll ma
7.1HIGH
CVE-2020-24557
all versions
A vulnerability in Trend Micro Apex One and Worry-Free Business Security 10.0 SP1 on Microsoft Windows may allow an attacker to ma
7.8HIGH
CVE-2020-24556
all versions
A vulnerability in Trend Micro Apex One, OfficeScan XG SP1, Worry-Free Business Security 10 SP1 and Worry-Free Business Security S
7.8HIGH
CVE-2020-8600
all versions
Trend Micro Worry-Free Business Security (9.0, 9.5, 10.0) is affected by a directory traversal vulnerability that could allow an a
9.8CRITICAL
CVE-2020-8598
all versions
Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) server contains a vulnerable service
9.8CRITICAL
CVE-2020-8470
all versions
Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) server contains a vulnerable service
7.5HIGH
CVE-2020-8468
all versions
Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) agents are affected by a content vali
8.8HIGH
CVE-2019-18189
all versions
A directory traversal vulnerability in Trend Micro Apex One, OfficeScan (11.0, XG) and Worry-Free Business Security (9.5, 10.0) ma
9.8CRITICAL
CVE-2019-9489
all versions
A directory traversal vulnerability in Trend Micro Apex One, OfficeScan (versions XG and 11.0), and Worry-Free Business Security (
7.5HIGH
CVE-2018-6218
all versions
A DLL Hijacking vulnerability in Trend Micro's User-Mode Hooking Module (UMH) could allow an attacker to run arbitrary code on a v
7.0HIGH
CVE-2016-1224
all versions
CRLF injection vulnerability in Trend Micro Worry-Free Business Security Service 5.x and Worry-Free Business Security 9.0 allows r
6.1MEDIUM
CVE-2016-1223
all versions
Directory traversal vulnerability in Trend Micro Office Scan 11.0, Worry-Free Business Security Service 5.x, and Worry-Free Busine
5.3MEDIUM
CVE-2008-2439
all versions
Directory traversal vulnerability in the UpdateAgent function in TmListen.exe in the OfficeScanNT Listener service in the client i
CVE-2008-2433
all versions
The web management console in Trend Micro OfficeScan 7.0 through 8.0, Worry-Free Business Security 5.0, and Client/Server/Messagin
9.8CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin