cvelist/2020/28xxx/CVE-2020-28582.json

82 lines
2.8 KiB
JSON
Raw Normal View History

2020-11-13 20:04:48 +00:00
{
2020-12-01 19:01:52 +00:00
"CVE_data_meta": {
"ASSIGNER": "security@trendmicro.com",
"ID": "CVE-2020-28582",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "Trend Micro Apex One",
"version": {
"version_data": [
{
"version_value": "2019"
}
]
}
},
{
"product_name": "Trend Micro OfficeScan",
"version": {
"version_data": [
{
"version_value": "XG SP1"
}
]
}
}
]
},
"vendor_name": "Trend Micro"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal number of managed agents."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Improper Access Control Information Disclosure"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://success.trendmicro.com/solution/000281949",
"refsource": "MISC",
"name": "https://success.trendmicro.com/solution/000281949"
},
{
"url": "https://success.trendmicro.com/solution/000281947",
"refsource": "MISC",
"name": "https://success.trendmicro.com/solution/000281947"
},
{
"url": "https://www.zerodayinitiative.com/advisories/ZDI-20-1386/",
"refsource": "MISC",
"name": "https://www.zerodayinitiative.com/advisories/ZDI-20-1386/"
}
]
}
}