VendorsTrend Microdeep_discovery_directorall versions
Vulnerabilities

Trend Micro Deep Discovery Director

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2017-11381
A command injection vulnerability exists in Trend Micro Deep Discovery Director 1.1 that allows an attacker to restore accounts that can access the pre-configuration console.
Published 2017-08-01 · Modified
9.8EPSS 0.031
CVE-2017-11380
Backup archives were found to be encrypted with a static password across different installations, which suggest the same password may be used in all virtual appliance instances of Trend Micro Deep Discovery Director 1.1.
Published 2017-08-01 · Modified
9.8EPSS 0.015
CVE-2017-11379
Configuration and database backup archives are not signed or validated in Trend Micro Deep Discovery Director 1.1.
Published 2017-08-01 · Modified
7.5EPSS 0.005