Security Advisory

CVE-2019-9488

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-09-11 18:00:08
Last updated 2024-08-04 21:54:44
Assigner trendmicro
CVSS score not scored
State PUBLISHED

Description

Trend Micro Deep Security Manager (10.x, 11.x) and Vulnerability Protection (2.0) are vulnerable to a XML External Entity Attack. However, for the attack to be possible, the attacker must have root/admin access to a protected host which is authorized to communicate with the Deep Security Manager (DSM).