First published: Thu Aug 27 2020(Updated: )
If LDAP authentication is enabled, an LDAP authentication bypass vulnerability in Trend Micro Deep Security 10.x-12.x could allow an unauthenticated attacker with prior knowledge of the targeted organization to bypass manager authentication. Enabling multi-factor authentication prevents this attack. Installations using manager native authentication or SAML authentication are not impacted by this vulnerability.
Credit: security@trendmicro.com
Affected Software | Affected Version | How to fix |
---|---|---|
Trend Micro Deep Security Manager | =10.0 | |
Trend Micro Deep Security Manager | =11.0 | |
Trend Micro Deep Security Manager | =12.0 | |
Trend Micro Deep Security Manager | =2.0-sp2 | |
Microsoft Windows | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.