Vulnerability Description
A potential unathenticated file deletion vulnerabilty on Trend Micro Mobile Security for Enterprise 9.8 SP5 could allow an attacker with access to the Management Server to delete files. This issue was resolved in 9.8 SP5 Critical Patch 2.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Trendmicro | Mobile Security | 9.8 |
References
- https://files.trendmicro.com/documentation/readme/tmms_sp5_cp2/tmms-ee_9.8_sp5_pRelease NotesVendor Advisory
- https://files.trendmicro.com/documentation/readme/tmms_sp5_cp2/tmms-ee_9.8_sp5_pRelease NotesVendor Advisory
FAQ
What is CVE-2022-40980?
CVE-2022-40980 is a vulnerability with a CVSS score of 9.1 (CRITICAL). A potential unathenticated file deletion vulnerabilty on Trend Micro Mobile Security for Enterprise 9.8 SP5 could allow an attacker with access to the Management Server to delete files. This issue was...
How severe is CVE-2022-40980?
CVE-2022-40980 has been rated CRITICAL with a CVSS base score of 9.1/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2022-40980?
Check the references section above for vendor advisories and patch information. Affected products include: Trendmicro Mobile Security.