AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2019-9488

MEDIUM · CVSS 4.9 EPSS 1.23%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-09-11 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2019-9488
Severity
MEDIUM
CVSS
4.9
EPSS
1.23%

Original Filing — NVD Description

Trend Micro Deep Security Manager (10.x, 11.x) and Vulnerability Protection (2.0) are vulnerable to a XML External Entity Attack. However, for the attack to be possible, the attacker must have root/admin access to a protected host which is authorized to communicate with the Deep Security Manager (DSM).