Reflected Cross-Site Scripting Vulnerability in Trend Micro Mobile Security
CVE-2023-41178
6.1MEDIUM
Key Information:
- Vendor
Trend Micro
- Vendor
- CVE Published:
- 23 January 2024
What is CVE-2023-41178?
Reflected cross-site scripting vulnerabilities found in Trend Micro Mobile Security (Enterprise) can potentially be exploited by an attacker targeting authenticated users. The exploitation occurs when a victim clicks on a crafted malicious link, resulting in unintended execution of scripts within the user's browser context. This vulnerability poses a significant risk, enabling attackers to compromise users’ sessions or inject malicious scripts, leading to unauthorized actions or data exposure. It is important for users to remain vigilant against unsolicited links and for the vendor to provide timely patches to mitigate such risks.
Affected Version(s)
Trend Micro Mobile Security for Enterprise 9.8 SP5 < 9.8.3311