Interscan Web Security Virtual Appliance

Vendor:

First CVE: Feb 17, 2009 · Active for 17 years

29
Total CVEs
More Total CVEs than 96% of tracked products
4.1
Avg CVEs / Year
Higher CVE frequency than 86% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 45% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Interscan Web Security Virtual Appliance over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 17, 2009
17 years ago
Most Recent CVE
Jun 10, 2024
777 days ago

CVE Severity & Scoring

Interscan Web Security Virtual Appliance29 CVEs
All CVEs352,785 CVEs
MediumHighCritical
Attack Vector
Local2 (6.9%)
Network25 (86.2%)
Unknown2 (6.9%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low27 (93.1%)
High0 (0.0%)
Unknown2 (6.9%)
User Interaction
None19 (65.5%)
Unknown2 (6.9%)
Required8 (27.6%)
Privileges Required
Low13 (44.8%)
High5 (17.2%)
None9 (31.0%)
Unknown2 (6.9%)

Top CVEs

Signals from CVEs in this product scope (29 CVEs).

29 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to execute arbitrary code on affected installations. Authentication is requir
May 27, 20208.888NOYES
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to disclose sensitive informatoin on affected installations.
May 27, 20207.582NOYES
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to bypass authentication on affected installations of Trend Micro InterScan W
May 27, 20209.880NOYES
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an unauthenticated, remote attacker to send a specially crafted HTTP message and achieve
Nov 18, 20209.869NONO
A command injection vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2, with the improved password hashing method enabled, could allow an unauthenticated
Dec 17, 20209.864NONO
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send a specially crafted HTTP message and achieve r
Nov 18, 20208.852NONO
A command injection vulnerability in ModifyVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially
Nov 18, 20207.245NONO
A command injection vulnerability in AddVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially cra
Nov 18, 20207.244NONO
Remote Command Execution in com.trend.iwss.gui.servlet.ManagePatches in Trend Micro Interscan Web Security Virtual Appliance (IWSVA) version 6.5-SP2_Build_Linux_1707 and earlier al
Feb 21, 20179.941NOYES
Privilege Escalation Vulnerability in com.trend.iwss.gui.servlet.updateaccountadministration in Trend Micro InterScan Web Security Virtual Appliance (IWSVA) version 6.5-SP2_Build_L
Feb 21, 20178.835NOYES

Exploit Exposure

Signals from CVEs in this product scope (29 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
3 CVEs
10.3% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
8 CVEs
27.6% of CVEs· 90th percentile

Social Chatter

Signals from CVEs in this product scope (29 CVEs).

Media Mentions

Signals from CVEs in this product scope (29 CVEs).

Top CNAs Publishing CVEs For Interscan Web Security Virtual Appliance

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
6.5207.527.6%03
6.014.01.5%00
5.614.01.5%00
5.514.01.5%00
5.114.01.5%00
3.114.32.2%00