mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
82 lines
2.8 KiB
JSON
82 lines
2.8 KiB
JSON
{
|
|
"CVE_data_meta": {
|
|
"ASSIGNER": "security@trendmicro.com",
|
|
"ID": "CVE-2020-28573",
|
|
"STATE": "PUBLIC"
|
|
},
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "Trend Micro Apex One",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "2019"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"product_name": "Trend Micro OfficeScan",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "XG SP1"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name": "Trend Micro"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format": "MITRE",
|
|
"data_type": "CVE",
|
|
"data_version": "4.0",
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal the total agents managed by the server."
|
|
}
|
|
]
|
|
},
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "Improper Access Control Information Disclosure"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"url": "https://success.trendmicro.com/solution/000281949",
|
|
"refsource": "MISC",
|
|
"name": "https://success.trendmicro.com/solution/000281949"
|
|
},
|
|
{
|
|
"url": "https://success.trendmicro.com/solution/000281947",
|
|
"refsource": "MISC",
|
|
"name": "https://success.trendmicro.com/solution/000281947"
|
|
},
|
|
{
|
|
"url": "https://www.zerodayinitiative.com/advisories/ZDI-20-1374/",
|
|
"refsource": "MISC",
|
|
"name": "https://www.zerodayinitiative.com/advisories/ZDI-20-1374/"
|
|
}
|
|
]
|
|
}
|
|
} |