Known Vulnerabilities for products from Trend Micro

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Trend Micro".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2018-18333 json A DLL hijacking vulnerability in Trend Micro Security 2019 (Consumer) versions below 15.0.0.1163 and below could allow an att... 7.8 - HIGH 2019-02-05 2021-09-09
CVE-2018-6218 json A DLL Hijacking vulnerability in Trend Micro's User-Mode Hooking Module (UMH) could allow an attacker to run arbitrary code o... 7 - HIGH 2018-02-16 2021-09-13
CVE-2016-5840 json hotfix_upload.cgi in Trend Micro Deep Discovery Inspector (DDI) 3.7, 3.8 SP1 (3.81), and 3.8 SP2 (3.82) allows remote adminis... Not Provided 2016-06-30 2026-05-06
CVE-2016-3664 json Trend Micro Mobile Security for iOS before 3.2.1188 does not verify the X.509 certificate of the mobile application login ser... Not Provided 2016-05-23 2026-05-06
CVE-2015-3326 json Trend Micro ScanMail for Microsoft Exchange (SMEX) 10.2 before Hot Fix Build 3318 and 11.0 before Hot Fix Build 4180 creates ... Not Provided 2015-05-14 2026-05-06
CVE-2012-2998 json SQL injection vulnerability in the ad hoc query module in Trend Micro Control Manager (TMCM) before 5.5.0.1823 and 6.0 before... Not Provided 2012-09-28 2026-04-29
CVE-2011-5001 json Stack-based buffer overflow in the CGenericScheduler::AddTask function in cmdHandlerRedAlertController.dll in CmdProcessor.ex... Not Provided 2011-12-25 2026-04-29
CVE-2008-5545 json Trend Micro VSAPI 8.700.0.1004 in Trend Micro AntiVirus, when Internet Explorer 6 or 7 is used, allows remote attackers to by... Not Provided 2008-12-12 2026-04-23
CVE-2008-4403 json The CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 allow... Not Provided 2008-10-03 2026-04-23
CVE-2008-4402 json Multiple buffer overflows in CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch ... Not Provided 2008-10-03 2026-04-23
CVE-2008-3866 json The Trend Micro Personal Firewall service (aka TmPfw.exe) in Trend Micro Network Security Component (NSC) modules, as used in... Not Provided 2009-01-21 2026-04-23
CVE-2008-3865 json Multiple heap-based buffer overflows in the ApiThread function in the firewall service (aka TmPfw.exe) in Trend Micro Network... Not Provided 2009-01-21 2026-04-23
CVE-2008-3864 json The ApiThread function in the firewall service (aka TmPfw.exe) in Trend Micro Network Security Component (NSC) modules, as us... Not Provided 2009-01-21 2026-04-23
CVE-2008-3862 json Stack-based buffer overflow in CGI programs in the server in Trend Micro OfficeScan 7.3 Patch 4 build 1367 and other builds b... Not Provided 2008-10-23 2026-04-23
CVE-2008-3364 json Buffer overflow in the ObjRemoveCtrl Class ActiveX control in OfficeScanRemoveCtrl.dll 7.3.0.1020 in Trend Micro OfficeScan C... Not Provided 2008-07-30 2026-04-23
CVE-2008-2439 json Directory traversal vulnerability in the UpdateAgent function in TmListen.exe in the OfficeScanNT Listener service in the cli... Not Provided 2008-10-03 2026-04-23
CVE-2008-2437 json Stack-based buffer overflow in cgiRecvFile.exe in Trend Micro OfficeScan 7.3 patch 4 build 1362 and other builds, OfficeScan ... Not Provided 2008-09-16 2026-04-23
CVE-2008-2435 json Use-after-free vulnerability in the Trend Micro HouseCall ActiveX control 6.51.0.1028 and 6.6.0.1278 in Housecall_ActiveX.dll... Not Provided 2008-12-23 2026-04-23
CVE-2008-2434 json The Trend Micro HouseCall ActiveX control 6.51.0.1028 and 6.6.0.1278 in Housecall_ActiveX.dll allows remote attackers to down... Not Provided 2008-12-23 2026-04-23
CVE-2008-1366 json Trend Micro OfficeScan Corporate Edition 8.0 Patch 2 build 1189 and earlier, and 7.3 Patch 3 build 1314 and earlier, allows r... Not Provided 2008-03-17 2026-04-23

Known software with vulnerabilities from Trend Micro

Type Vendor Product Version
ApplicationTrend MicroHijackthis1.99.1
ApplicationTrend MicroInterscan Web Security Suite2.5
ApplicationTrend MicroInterscan Web Security Virtual Appliance3.1
ApplicationTrend MicroMobile Security3.1
ApplicationTrend MicroTrend Micro Common Cgi2.0.0.1227
ApplicationTrend MicroTrend Micro Portalprotect1.7