First published: Tue Jan 23 2024(Updated: )
Reflected cross-site scripting (XSS) vulnerabilities in Trend Micro Mobile Security (Enterprise) could allow an exploit against an authenticated victim that visits a malicious link provided by an attacker. Please note, this vulnerability is similar to, but not identical to, CVE-2023-41178.
Credit: security@trendmicro.com
Affected Software | Affected Version | How to fix |
---|---|---|
Trend Micro Mobile Security for Enterprises | ||
Trend Micro Mobile Security | =9.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-41177 is classified as a reflected cross-site scripting (XSS) vulnerability that can impact authenticated users.
To mitigate CVE-2023-41177, ensure that Trend Micro Mobile Security for Enterprises is updated to the latest version available.
Users of Trend Micro Mobile Security for Enterprises, particularly those on version 9.8 and earlier, are affected by CVE-2023-41177.
Attackers can exploit CVE-2023-41177 by tricking authenticated users into clicking malicious links, leading to potential XSS attacks.
Currently, it is recommended to avoid clicking on unknown or suspicious links while using Trend Micro Mobile Security for Enterprises until a fix can be applied.