Internet Security 2020
Vendor:
First CVE: Dec 2, 2019 · Active for 6 years
11
Total CVEs
More Total CVEs than 89% of tracked products
3.7
Avg CVEs / Year
Higher CVE frequency than 83% of tracked products
7.7
Avg CVSS
Higher Avg CVSS than 62% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Internet Security 2020 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 2, 2019
6 years ago
Most Recent CVE
Feb 10, 2021
1,992 days ago
CVE Severity & Scoring
Internet Security 202011 CVEs
9%
82%
9%
All CVEs352,719 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local8 (72.7%)
Network3 (27.3%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low10 (90.9%)
High1 (9.1%)
Unknown0 (0.0%)
User Interaction
None6 (54.5%)
Unknown0 (0.0%)
Required5 (45.5%)
Privileges Required
Low3 (27.3%)
High1 (9.1%)
None7 (63.6%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (11 CVEs).
11 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-18190CRITICAL Trend Micro Security (Consumer) 2020 (v16.x) is affected by a vulnerability in where null pointer dereference errors result in the crash of application, which could potentially lea | Dec 9, 2019 | 9.8 | 30 | NO | NO |
CVE-2019-20357HIGH A Persistent Arbitrary Code Execution vulnerability exists in the Trend Micro Security 2020 (v160 and 2019 (v15) consumer familiy of products which could potentially allow an attac | Jan 18, 2020 | 7.8 | 25 | NO | NO |
CVE-2019-15628HIGH Trend Micro Security (Consumer) 2020 (v16.0.1221 and below) is affected by a DLL hijacking vulnerability that could allow an attacker to use a specific service as an execution and/ | Dec 2, 2019 | 7.8 | 25 | NO | NO |
CVE-2021-25251HIGH The Trend Micro Security 2020 and 2021 families of consumer products are vulnerable to a code injection vulnerability which could allow an attacker to disable the program's passwor | Feb 10, 2021 | 7.2 | 24 | NO | NO |
CVE-2020-27697HIGH Trend Micro Security 2020 (Consumer) contains a vulnerability in the installer package that could be exploited by placing a malicious DLL in a non-protected location with high priv | Nov 18, 2020 | 7.8 | 23 | NO | NO |
CVE-2020-27696HIGH Trend Micro Security 2020 (Consumer) contains a vulnerability in the installer package that could be exploited by placing a specific Windows system directory which can lead to obta | Nov 18, 2020 | 7.8 | 23 | NO | NO |
CVE-2020-27695HIGH Trend Micro Security 2020 (Consumer) contains a vulnerability in the installer package that could be exploited by placing a malicious DLL in a local directory which can lead to obt | Nov 18, 2020 | 7.8 | 23 | NO | NO |
CVE-2020-25775MEDIUM The Trend Micro Security 2020 (v16) consumer family of products is vulnerable to a security race condition arbitrary file deletion vulnerability that could allow an unprivileged us | Sep 29, 2020 | 6.3 | 22 | NO | NO |
CVE-2019-19693HIGH The Trend Micro Security 2020 consumer family of products contains a vulnerability that could allow a local attacker to disclose sensitive information or to create a denial-of-serv | Dec 20, 2019 | 7.1 | 22 | NO | NO |
CVE-2020-15602HIGH An untrusted search path remote code execution (RCE) vulnerability in the Trend Micro Secuity 2020 (v16.0.0.1146 and below) consumer family of products could allow an attacker to r | Jul 15, 2020 | 7.8 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (11 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (11 CVEs).
Media Mentions
Signals from CVEs in this product scope (11 CVEs).
Top CNAs Publishing CVEs For Internet Security 2020
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 16.0 | 2 | 7.5 | 1.6% | 0 | 0 |