Логотип exploitDog
bind:CVE-2025-53378
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-53378

Количество 3

Количество 3

nvd логотип

CVE-2025-53378

около 1 месяца назад

A missing authentication vulnerability in Trend Micro Worry-Free Business Security Services (WFBSS) agent could have allowed an unauthenticated attacker to remotely take control of the agent on affected installations. Also note: this vulnerability only affected the SaaS client version of WFBSS only, meaning the on-premise version of Worry-Free Business Security was not affected, and this issue was addressed in a WFBSS monthly maintenance update. Therefore no other customer action is required to mitigate if the WFBSS agents are on the regular SaaS maintenance deployment schedule and this disclosure is for informational purposes only.

CVSS3: 7.6
EPSS: Низкий
github логотип

GHSA-57q3-g47v-6hpr

около 1 месяца назад

A missing authentication vulnerability in Trend Micro Worry-Free Business Security Services (WFBSS) agent could have allowed an unauthenticated attacker to remotely take control of the agent on affected installations. Also note: this vulnerability only affected the SaaS client version of WFBSS only, meaning the on-premise version of Worry-Free Business Security was not affected, and this issue was addressed in a WFBSS monthly maintenance update. Therefore no other customer action is required to mitigate if the WFBSS agents are on the regular SaaS maintenance deployment schedule and this disclosure is for informational purposes only.

CVSS3: 7.6
EPSS: Низкий
fstec логотип

BDU:2025-08903

6 месяцев назад

Уязвимость антивирусных программных средств Trend Micro Worry-Free Business Security (WFBS) и Worry-Free Business Security Services (WFBSS), связанная с отсутствием аутентификации для критичной функции, позволяющая нарушителю получить полный контроль над приложением

CVSS3: 7.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-53378

A missing authentication vulnerability in Trend Micro Worry-Free Business Security Services (WFBSS) agent could have allowed an unauthenticated attacker to remotely take control of the agent on affected installations. Also note: this vulnerability only affected the SaaS client version of WFBSS only, meaning the on-premise version of Worry-Free Business Security was not affected, and this issue was addressed in a WFBSS monthly maintenance update. Therefore no other customer action is required to mitigate if the WFBSS agents are on the regular SaaS maintenance deployment schedule and this disclosure is for informational purposes only.

CVSS3: 7.6
0%
Низкий
около 1 месяца назад
github логотип
GHSA-57q3-g47v-6hpr

A missing authentication vulnerability in Trend Micro Worry-Free Business Security Services (WFBSS) agent could have allowed an unauthenticated attacker to remotely take control of the agent on affected installations. Also note: this vulnerability only affected the SaaS client version of WFBSS only, meaning the on-premise version of Worry-Free Business Security was not affected, and this issue was addressed in a WFBSS monthly maintenance update. Therefore no other customer action is required to mitigate if the WFBSS agents are on the regular SaaS maintenance deployment schedule and this disclosure is for informational purposes only.

CVSS3: 7.6
0%
Низкий
около 1 месяца назад
fstec логотип
BDU:2025-08903

Уязвимость антивирусных программных средств Trend Micro Worry-Free Business Security (WFBS) и Worry-Free Business Security Services (WFBSS), связанная с отсутствием аутентификации для критичной функции, позволяющая нарушителю получить полный контроль над приложением

CVSS3: 7.6
0%
Низкий
6 месяцев назад

Уязвимостей на страницу