CVE-2017-11380: Critical severity trendmicro Deep Discovery Director vulnerability
Backup archives were found to be encrypted with a static password across different installations, which suggest the same password may be used in all virtual appliance instances of Trend Micro Deep Discovery Director 1.1.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-11380?
The severity of CVE-2017-11380 is rated as critical with a score of 9.8.
What does CVE-2017-11380 vulnerability involve?
CVE-2017-11380 involves backup archives being encrypted with a static password across different installations of Trend Micro Deep Discovery Director 1.1.
How do I fix CVE-2017-11380?
To fix CVE-2017-11380, ensure that unique passwords are used for each backup archive in all instances of Trend Micro Deep Discovery Director.
Who is affected by CVE-2017-11380?
CVE-2017-11380 affects all installations of Trend Micro Deep Discovery Director version 1.1.
What are the potential risks of CVE-2017-11380?
The potential risks of CVE-2017-11380 include unauthorized access to backup data due to the use of a static password across multiple installations.