Trend Micro Deep Security是美国趋势科技(Trend Micro)公司的一套智能数据保护解决方案。 Trend Micro Deep Security 10.x至12.x版存在授权认证漏洞,该漏洞源于LDAP认证可用的状态下允许事先知道目标组织的未经身份验证的攻击者绕过管理器身份验证。启用多因素身份验证可防止此攻击。使用manager本机身份验证或SAML身份验证的安装不受此漏洞的影响。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Trend Micro | Trend Micro Deep Security | 10.0, 11.0, 12.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-15605 | Trend Micro Vulnerability Protection 授权问题漏洞 | |
| CVE-2020-8602 | Trend Micro Deep Security和Vulnerability Protection 安全漏洞 |
No comments yet