CVE-2019-9489
25Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck and 1 threat group(s) use it.
ssvc Attendepss 2.3%
from disclosure to weapon
Published on NVDApr 5
VulnCheck+287d
exploitation probability
2.3%top 19% of all CVEs
observed exploitation
yesVulnCheck
1 group(s)
Who exploits it — 1
Groups known to exploit this vulnerability (MITRE ATT&CK attribution).
A directory traversal vulnerability in Trend Micro Apex One, OfficeScan (versions XG and 11.0), and Worry-Free Business Security (versions 10.0, 9.5 and 9.0) could allow an attacker to modify arbitrary files on the affected product's management console.
Affected products
Trend Micro · Apex One, OfficeScan, Worry-Free Business Security