Trendmicro
Trendmicro Trend Micro Endpoint Encryption: vulnerabilidades y CVE
Trendmicro Trend Micro Endpoint Encryption tiene 9 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 4 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses0
Críticas4
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-49218 | Alta (7.8) | 0.13% | — | 17 jun 2025 | A post-auth SQL injection vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to escalate privileges on affected installations. This is similar to, but not identical to… |
| CVE-2025-49217 | Crítica (9.8) | 1.1% | — | 17 jun 2025 | An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to… |
| CVE-2025-49216 | Crítica (9.8) | 0.55% | — | 17 jun 2025 | An authentication bypass vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to access key methods as an admin user and modify product configurations on affected installations. |
| CVE-2025-49215 | Alta (8.8) | 0.33% | — | 17 jun 2025 | A post-auth SQL injection vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the… |
| CVE-2025-49214 | Alta (8.8) | 0.84% | — | 17 jun 2025 | An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a post-authentication remote code execution on affected installations. Please note: an attacker must first obtain… |
| CVE-2025-49213 | Crítica (9.8) | 13% | — | 17 jun 2025 | An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to… |
| CVE-2025-49212 | Crítica (9.8) | 13% | — | 17 jun 2025 | An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to… |
| CVE-2025-49211 | Alta (7.8) | 0.13% | — | 17 jun 2025 | A SQL injection vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to… |
| CVE-2023-28005 | Media (6.8) | 0.20% | — | 22 mar 2023 | A vulnerability in Trend Micro Endpoint Encryption Full Disk Encryption version 6.0.0.3204 and below could allow an attacker with physical access to an affected device to bypass Microsoft Windows� Secure Boot process in… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.