Trend Micro discloses vulnerabilities in their enterprise products
Take action: Trend Micro Mobile Security for Enterprise has three critical vulnerabilites which can be combined together to construct a very advanced attack. Please update your Mobile Security for Enterprise to 9.8 SP5 Critical Patch B3284
Learn More
Trend Micro informed of eight vulnerabilities Mobile Security for Enterprise 9.8 product suite. Among these, three have been classified as critical vulnerabilities.
CVE-2023-32523 and CVE-2023-32524, both authentication bypass bugs, have been identified as critical vulnerabilities. These can be exploited by remote attackers.
Another critical vulnerability is CVE-2023-32521, which Trend Micro simply describes as an unauthenticated file deletion vulnerability.
Trend Micro suggests that these vulnerabilities could potentially be combined with other security flaws, and has released the following solutions to address the issue: Mobile Security for Enterprise 9.8 SP5 Critical Patch B3284