#VU35149 Information disclosure in Deep Security - CVE-2019-15626
Published: October 17, 2019 / Updated: August 8, 2020
Deep Security
Trend Micro
Description
The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.
The Deep Security Manager application (Versions 10.0, 11.0 and 12.0), when configured in a certain way, may transmit initial LDAP communication in clear text. This may result in confidentiality impact but does not impact integrity or availability.