Vulnerability Description
The Deep Security Manager application (Versions 10.0, 11.0 and 12.0), when configured in a certain way, may transmit initial LDAP communication in clear text. This may result in confidentiality impact but does not impact integrity or availability.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Trendmicro | Deep Security | 10.0 |
Related Weaknesses (CWE)
References
- https://success.trendmicro.com/solution/000149495PatchVendor Advisory
- https://success.trendmicro.com/solution/000149495PatchVendor Advisory
FAQ
What is CVE-2019-15626?
CVE-2019-15626 is a vulnerability with a CVSS score of 7.5 (HIGH). The Deep Security Manager application (Versions 10.0, 11.0 and 12.0), when configured in a certain way, may transmit initial LDAP communication in clear text. This may result in confidentiality impact...
How severe is CVE-2019-15626?
CVE-2019-15626 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-15626?
Check the references section above for vendor advisories and patch information. Affected products include: Trendmicro Deep Security.