CVE-2016-9319: Medium severity trend micro mobile security for enterprises vulnerability
Published Mar 31, 2017
·Updated
There is Missing SSL Certificate Validation in the Trend Micro Enterprise Mobile Security Android Application before 9.7.1193, aka VRTS-398.
Affected Software
1 affected component
trendmicro Mobile Security<=9.7
Remediation
Patch Available
Event History
Mar 31, 2017
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-9319?
CVE-2016-9319 is classified as a medium-severity vulnerability due to the potential for man-in-the-middle attacks.
2
How do I fix CVE-2016-9319?
To fix CVE-2016-9319, update the Trend Micro Enterprise Mobile Security application to version 9.7.1194 or higher.
3
What impact does CVE-2016-9319 have on users?
CVE-2016-9319 allows attackers to intercept and manipulate sensitive data transmitted over SSL, compromising user security.
4
Which versions of Trend Micro Mobile Security are affected by CVE-2016-9319?
CVE-2016-9319 affects all versions of Trend Micro Enterprise Mobile Security for Android prior to 9.7.1194.
5
Is CVE-2016-9319 a client-side vulnerability?
Yes, CVE-2016-9319 is a client-side vulnerability affecting the Trend Micro Enterprise Mobile Security application.