CVE-2020-15601: Trend Micro Deep Security Manager Authentication Bypass Vulnerability
If LDAP authentication is enabled, an LDAP authentication bypass vulnerability in Trend Micro Deep Security 10.x-12.x could allow an unauthenticated attacker with prior knowledge of the targeted organization to bypass manager authentication. Enabling multi-factor authentication prevents this attack. Installations using manager native authentication or SAML authentication are not impacted by this vulnerability.
Other sources
This vulnerability allows remote attackers to bypass authentication on affected installations of Trend Micro Deep Security Manager. Authentication is not required to exploit this vulnerability. The specific flaw exists within the Deep Security Manager console. The issue results from the lack of proper validation prior to authentication. An attacker can leverage this vulnerability to bypass authentication on the system.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2020-15601?
CVE-2020-15601 is considered a high severity vulnerability due to its potential for LDAP authentication bypass.
How do I fix CVE-2020-15601?
To mitigate CVE-2020-15601, it is recommended to disable LDAP authentication or enable multi-factor authentication.
What versions are affected by CVE-2020-15601?
CVE-2020-15601 affects Trend Micro Deep Security Manager versions 10.x, 11.x, and 12.x.
Can CVE-2020-15601 lead to unauthorized access?
Yes, CVE-2020-15601 can allow an unauthenticated attacker to bypass manager authentication and gain unauthorized access.
What potential impact does CVE-2020-15601 have on organizations?
The impact of CVE-2020-15601 includes exposure of sensitive data and potential control over the security management system.