A remote attacker could leverage a vulnerability in Trend Micro Mobile Security (Enterprise) 9.8 SP5 to download a particular log file which may contain sensitive information regarding the product.
References
| Link | Resource |
|---|---|
| https://success.trendmicro.com/dcx/s/solution/000293106?language=en_US | Patch Vendor Advisory |
| https://www.tenable.com/security/research/tra-2023-17 | Exploit Third Party Advisory |
| https://success.trendmicro.com/dcx/s/solution/000293106?language=en_US | Patch Vendor Advisory |
| https://www.tenable.com/security/research/tra-2023-17 | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 08:08
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://success.trendmicro.com/dcx/s/solution/000293106?language=en_US - Patch, Vendor Advisory | |
| References | () https://www.tenable.com/security/research/tra-2023-17 - Exploit, Third Party Advisory |
30 Jun 2023, 17:49
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:trendmicro:mobile_security:9.8:sp5:*:*:enterprise:windows:*:* | |
| CWE | CWE-532 | |
| First Time |
Trendmicro mobile Security
Trendmicro |
|
| References | (MISC) https://success.trendmicro.com/dcx/s/solution/000293106?language=en_US - Patch, Vendor Advisory | |
| References | (MISC) https://www.tenable.com/security/research/tra-2023-17 - Exploit, Third Party Advisory | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
26 Jun 2023, 22:22
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-06-26 22:15
Updated : 2024-11-21 08:08
NVD link : CVE-2023-35695
Mitre link : CVE-2023-35695
CVE.ORG link : CVE-2023-35695
JSON object : View
Products Affected
trendmicro
- mobile_security
CWE
CWE-532
Insertion of Sensitive Information into Log File
