Internet Security

Vendor:

First CVE: Apr 1, 2009 · Active for 17 years

17
Total CVEs
More Total CVEs than 93% of tracked products
2.1
Avg CVEs / Year
Higher CVE frequency than 73% of tracked products
7.4
Avg CVSS
Higher Avg CVSS than 49% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Internet Security over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 1, 2009
17 years ago
Most Recent CVE
Jan 29, 2024
908 days ago

CVE Severity & Scoring

Internet Security17 CVEs
All CVEs352,294 CVEs
MediumHighCritical
Attack Vector
Local12 (70.6%)
Network3 (17.6%)
Unknown2 (11.8%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low14 (82.4%)
High1 (5.9%)
Unknown2 (11.8%)
User Interaction
None12 (70.6%)
Unknown2 (11.8%)
Required3 (17.6%)
Privileges Required
Low10 (58.8%)
High1 (5.9%)
None4 (23.5%)
Unknown2 (11.8%)

Top CVEs

Signals from CVEs in this product scope (17 CVEs).

17 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
The extSetOwner function in the UfProxyBrowserCtrl ActiveX control (UfPBCtrl.dll) in Trend Micro Internet Security Pro 2010 allows remote attackers to execute arbitrary code via an
Aug 31, 20109.370NOYES
A vulnerability in Trend Micro Maximum Security's (Consumer) 2018 (versions 12.0.1191 and below) User-Mode Hooking (UMH) driver could allow an attacker to create a specially crafte
Jul 6, 20189.830NONO
The TrendMicro Activity Monitor Module (tmactmon.sys) 2.52.0.1002 in Trend Micro Internet Pro 2008 and 2009, and Security Pro 2008 and 2009, allows local users to gain privileges v
Apr 1, 20097.230NOYES
A DLL hijacking vulnerability in Trend Micro Security 2019 (Consumer) versions below 15.0.0.1163 and below could allow an attacker to manipulate a specific DLL and escalate privile
Feb 5, 20197.826NONO
An Out-of-Bounds Read Privilege Escalation vulnerability in Trend Micro Security 2018 (Consumer) products could allow a local attacker to escalate privileges on vulnerable installa
Aug 30, 20187.825NONO
A Missing Impersonation Privilege Escalation vulnerability in Trend Micro Security 2018 (Consumer) products could allow a local attacker to escalate privileges on vulnerable instal
Aug 30, 20187.825NONO
A Deserialization of Untrusted Data Privilege Escalation vulnerability in Trend Micro Security 2018 (Consumer) products could allow a local attacker to escalate privileges on vulne
Aug 30, 20187.825NONO
Trend Micro uiAirSupport, included in the Trend Micro Security 2023 family of consumer products, version 6.0.2092 and below is vulnerable to a DLL hijacking/proxying vulnerability,
Jan 29, 20247.824NONO
An Out-of-Bounds write privilege escalation vulnerability in Trend Micro Maximum Security (Consumer) 2018 could allow a local attacker to escalate privileges on vulnerable installa
May 25, 20187.823NONO
A buffer overflow privilege escalation vulnerability in Trend Micro Maximum Security (Consumer) 2018 could allow a local attacker to escalate privileges on vulnerable installations
May 25, 20187.823NONO

Exploit Exposure

Signals from CVEs in this product scope (17 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
5.9% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
11.8% of CVEs· 89th percentile

Social Chatter

Signals from CVEs in this product scope (17 CVEs).

Media Mentions

Signals from CVEs in this product scope (17 CVEs).

Top CNAs Publishing CVEs For Internet Security

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
8.026.32.5%00
201019.339.2%01
200917.20.8%01
200817.20.8%01
10.026.32.5%00