Known vulnerabilities in Deep Discovery Director
Vendor:
Trend Micro
Software:
Deep Discovery Director
Software CPE:
cpe:2.3:a:trend_micro:deep_discovery_director:*:*:*:*:*:*:*:*
Website:
https://www.trendmicro.com/
Total vulnerabilities:
6
Public exploits:
2
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU59051 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2021-45105 |
CWE-835 | Medium | 5.3 CP B1225 | 18.12.2021 |
SB2021121802 SB2021121903 SB2021122011 and 169 more |
||
| #VU58976 - Improper Control of Generation of Code ('Code Injection') CVE-2021-45046 |
CWE-94 | High | 5.3 CP B1225 | 15.12.2021 |
SB2021121504 SB2021121511 SB2021121512 and 178 more |
||
| #VU58816 - Improper Control of Generation of Code ('Code Injection') CVE-2021-44228 |
CWE-94 | Critical | 5.3 CP B1225 | 10.12.2021 |
SB2021121003 SB2021121101 SB2021121201 and 338 more |
||
| #VU38615 - Insufficient Verification of Data Authenticity CVE-2017-11379 |
CWE-345 | Medium | - | 01.08.2017 |
SB2017080116 |
||
| #VU38616 - Use of Hard-coded Credentials CVE-2017-11380 |
CWE-798 | High | - | 01.08.2017 |
SB2017080116 |
||
| #VU38617 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2017-11381 |
CWE-78 | High | - | 01.08.2017 |
SB2017080116 |