First published: Fri Sep 22 2017(Updated: )
Unrestricted file uploads in Trend Micro Mobile Security (Enterprise) versions before 9.7 Patch 3 allow remote attackers to execute arbitrary code on vulnerable installations.
Credit: security@trendmicro.com
Affected Software | Affected Version | How to fix |
---|---|---|
Trend Micro Mobile Security | =9.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14079 is considered a critical vulnerability due to its potential for arbitrary code execution.
To mitigate CVE-2017-14079, upgrade to Trend Micro Mobile Security (Enterprise) version 9.7 Patch 3 or later.
CVE-2017-14079 affects vulnerable installations of Trend Micro Mobile Security (Enterprise) prior to version 9.7 Patch 3.
Yes, CVE-2017-14079 can be exploited remotely, allowing attackers to execute arbitrary code.
The potential impacts of CVE-2017-14079 include unauthorized access, data loss, and complete system compromise.