cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-8470,https://securityvulnerability.io/vulnerability/CVE-2020-8470,Service DLL Vulnerability in Trend Micro Security Products,"A critical vulnerability in the server components of Trend Micro's Apex One, OfficeScan XG, and Worry-Free Business Security products allows an attacker to exploit a flawed service DLL file. This flaw enables attackers, with no authentication required, to delete any files on the server, posing a significant risk to data integrity and server operations. Organizations using these products must apply the necessary patches to mitigate potential threats.",Trend Micro,"Trend Micro Officescan, Trend Micro Apex One, Trend Micro Worry-free Business Security (wfbs)",7.5,HIGH,0.0015999999595806003,false,,false,false,false,,,false,false,,2020-03-18T00:30:44.000Z,0 CVE-2020-8598,https://securityvulnerability.io/vulnerability/CVE-2020-8598,Remote Code Execution Vulnerability in Trend Micro Apex One and OfficeScan,"A remote code execution vulnerability exists in the server components of Trend Micro's security products, including Apex One and OfficeScan. This flaw is due to a vulnerable service DLL file that enables attackers to gain SYSTEM level privileges on affected systems. Notably, this vulnerability does not require authentication for exploitation, heightening the risk for users who do not promptly apply available security updates. Deploying protective measures and keeping software up-to-date is essential to mitigate this risk.",Trend Micro,"Trend Micro Officescan, Trend Micro Apex One, Trend Micro Worry-free Business Security (wfbs)",9.8,CRITICAL,0.02937999926507473,false,,false,false,false,,,false,false,,2020-03-18T00:30:44.000Z,0 CVE-2020-8468,https://securityvulnerability.io/vulnerability/CVE-2020-8468,Content Validation Escape Vulnerability in Trend Micro Products,"Trend Micro Apex One (2019), OfficeScan XG, and Worry-Free Business Security (versions 9.0, 9.5, and 10.0) are susceptible to a content validation escape vulnerability. This flaw could allow an authenticated attacker to manipulate specific components within the agent client, leading to potential unauthorized actions or data exposure. Organizations utilizing these products should ensure that they maintain up-to-date security measures to mitigate risks associated with this vulnerability.",Trend Micro,"Trend Micro Officescan, Trend Micro Apex One, Trend Micro Worry-free Business Security (wfbs)",8.8,HIGH,0.004519999958574772,true,2021-11-03T00:00:00.000Z,false,false,true,2021-11-03T00:00:00.000Z,,false,false,,2020-03-18T00:30:43.000Z,0 CVE-2019-18189,https://securityvulnerability.io/vulnerability/CVE-2019-18189,Directory Traversal Vulnerability in Trend Micro Apex One and OfficeScan,"A directory traversal vulnerability in Trend Micro's Apex One, OfficeScan, and Worry-Free Business Security products allows unauthorized attackers to bypass authentication. This flaw enables an attacker to gain access to the management console as a root user without any prior authentication, potentially compromising system integrity and data security. Organizations using these affected versions should take immediate action to mitigate the risk by applying necessary patches and updates.",Trend Micro,"Trend Micro Apex One, Trend Micro Officescan (osce), Trend Micro Worry-free Business Security (wfbs)",9.8,CRITICAL,0.0019000000320374966,false,,false,false,false,,,false,false,,2019-10-28T19:28:32.000Z,0