CVE-2017-14080: Critical severity trend micro mobile security for enterprises vulnerability
Published Sep 22, 2017
·Updated
Authentication bypass vulnerability in Trend Micro Mobile Security (Enterprise) versions before 9.7 Patch 3 allows attackers to access a specific part of the console using a blank password.
Affected Software
1 affected component
trendmicro Mobile Security=9.7
Remediation
Patch Available
Event History
Sep 22, 2017
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-14080?
CVE-2017-14080 is classified as a high severity vulnerability due to the potential for unauthorized access.
2
How do I fix CVE-2017-14080?
To fix CVE-2017-14080, update Trend Micro Mobile Security (Enterprise) to version 9.7 Patch 3 or later.
3
What versions of Trend Micro Mobile Security are affected by CVE-2017-14080?
CVE-2017-14080 affects Trend Micro Mobile Security (Enterprise) versions prior to 9.7 Patch 3.
4
What kind of attack does CVE-2017-14080 enable?
CVE-2017-14080 enables an authentication bypass attack allowing unauthorized access to the console.
5
Is it necessary to implement additional security measures after fixing CVE-2017-14080?
Yes, it is recommended to implement additional security measures to safeguard against potential exploitation after fixing CVE-2017-14080.