Reflected Cross-Site Scripting in Trend Micro Mobile Security
CVE-2023-41176
6.1MEDIUM
Key Information:
- Vendor
Trend Micro
- Vendor
- CVE Published:
- 23 January 2024
What is CVE-2023-41176?
Reflected cross-site scripting vulnerabilities identified in Trend Micro Mobile Security (Enterprise) create a pathway for exploits targeting authenticated users. An attacker could craft a malicious link which, when visited by an authenticated victim, compromises security and privacy. This issue highlights the importance of user awareness and the necessity for timely updates and security measures to mitigate such attacks. Organizations relying on this software are advised to monitor for potential exploitation and review the mitigation steps provided by Trend Micro.
Affected Version(s)
Trend Micro Mobile Security for Enterprise 9.8 SP5 < 9.8.3311