// For flags

CVE-2021-25252

 

Severity Score

5.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Trend Micro's Virus Scan API (VSAPI) and Advanced Threat Scan Engine (ATSE) - are vulnerable to a memory exhaustion vulnerability that may lead to denial-of-service or system freeze if exploited by an attacker using a specially crafted file.

La API Virus Scan (VSAPI) y el Advanced Threat Scan Engine (ATSE) de Trend Micro, son susceptibles a una vulnerabilidad de agotamiento de la memoria que puede conllevar a una denegaciĆ³n de servicio o a un congelamiento del sistema si es explotada por un atacante usando un archivo especialmente diseƱado

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2021-01-15 CVE Reserved
  • 2021-03-03 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-03 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-400: Uncontrolled Resource Consumption
CAPEC
References (1)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Trendmicro
Search vendor "Trendmicro"
Apex Central
Search vendor "Trendmicro" for product "Apex Central"
2019
Search vendor "Trendmicro" for product "Apex Central" and version "2019"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Apex One
Search vendor "Trendmicro" for product "Apex One"
2019
Search vendor "Trendmicro" for product "Apex One" and version "2019"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Apex One
Search vendor "Trendmicro" for product "Apex One"
--
Affected
in Apple
Search vendor "Apple"
Macos
Search vendor "Apple" for product "Macos"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Control Manager
Search vendor "Trendmicro" for product "Control Manager"
7.0
Search vendor "Trendmicro" for product "Control Manager" and version "7.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Officescan
Search vendor "Trendmicro" for product "Officescan"
--
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Portal Protect
Search vendor "Trendmicro" for product "Portal Protect"
2.6
Search vendor "Trendmicro" for product "Portal Protect" and version "2.6"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Scanmail
Search vendor "Trendmicro" for product "Scanmail"
14.0
Search vendor "Trendmicro" for product "Scanmail" and version "14.0"
microsoft_exchange
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Scanmail For Ibm Domino
Search vendor "Trendmicro" for product "Scanmail For Ibm Domino"
5.8
Search vendor "Trendmicro" for product "Scanmail For Ibm Domino" and version "5.8"
-
Affected
in Linux
Search vendor "Linux"
Linux Kernel
Search vendor "Linux" for product "Linux Kernel"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Scanmail For Ibm Domino
Search vendor "Trendmicro" for product "Scanmail For Ibm Domino"
5.8
Search vendor "Trendmicro" for product "Scanmail For Ibm Domino" and version "5.8"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Serverprotect For Storage
Search vendor "Trendmicro" for product "Serverprotect For Storage"
6.0
Search vendor "Trendmicro" for product "Serverprotect For Storage" and version "6.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Serverprotect
Search vendor "Trendmicro" for product "Serverprotect"
5.8
Search vendor "Trendmicro" for product "Serverprotect" and version "5.8"
-
Affected
in Emc
Search vendor "Emc"
Celerra Network Attached Storage
Search vendor "Emc" for product "Celerra Network Attached Storage"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Serverprotect
Search vendor "Trendmicro" for product "Serverprotect"
5.8
Search vendor "Trendmicro" for product "Serverprotect" and version "5.8"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Serverprotect
Search vendor "Trendmicro" for product "Serverprotect"
5.8
Search vendor "Trendmicro" for product "Serverprotect" and version "5.8"
-
Affected
in Novell
Search vendor "Novell"
Netware
Search vendor "Novell" for product "Netware"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Serverprotect For Network Appliance Filers
Search vendor "Trendmicro" for product "Serverprotect For Network Appliance Filers"
5.8
Search vendor "Trendmicro" for product "Serverprotect For Network Appliance Filers" and version "5.8"
-
Affected
in Netapp
Search vendor "Netapp"
Cluster Data Ontap
Search vendor "Netapp" for product "Cluster Data Ontap"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Safe Lock
Search vendor "Trendmicro" for product "Safe Lock"
1.1
Search vendor "Trendmicro" for product "Safe Lock" and version "1.1"
txone
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Worry-free Business Security
Search vendor "Trendmicro" for product "Worry-free Business Security"
10.1
Search vendor "Trendmicro" for product "Worry-free Business Security" and version "10.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Windows
Search vendor "Microsoft" for product "Windows"
--
Safe
Trendmicro
Search vendor "Trendmicro"
Cloud Edge
Search vendor "Trendmicro" for product "Cloud Edge"
5.0
Search vendor "Trendmicro" for product "Cloud Edge" and version "5.0"
-
Affected
Trendmicro
Search vendor "Trendmicro"
Deep Security
Search vendor "Trendmicro" for product "Deep Security"
10.0
Search vendor "Trendmicro" for product "Deep Security" and version "10.0"
-
Affected
Trendmicro
Search vendor "Trendmicro"
Deep Security
Search vendor "Trendmicro" for product "Deep Security"
11.0
Search vendor "Trendmicro" for product "Deep Security" and version "11.0"
-
Affected
Trendmicro
Search vendor "Trendmicro"
Deep Security
Search vendor "Trendmicro" for product "Deep Security"
12.0
Search vendor "Trendmicro" for product "Deep Security" and version "12.0"
-
Affected
Trendmicro
Search vendor "Trendmicro"
Deep Security
Search vendor "Trendmicro" for product "Deep Security"
20.0
Search vendor "Trendmicro" for product "Deep Security" and version "20.0"
long_term_support
Affected
Trendmicro
Search vendor "Trendmicro"
Deep Discovery Analyzer
Search vendor "Trendmicro" for product "Deep Discovery Analyzer"
5.1
Search vendor "Trendmicro" for product "Deep Discovery Analyzer" and version "5.1"
-
Affected
Trendmicro
Search vendor "Trendmicro"
Deep Discovery Email Inspector
Search vendor "Trendmicro" for product "Deep Discovery Email Inspector"
2.5
Search vendor "Trendmicro" for product "Deep Discovery Email Inspector" and version "2.5"
-
Affected
Trendmicro
Search vendor "Trendmicro"
Deep Discovery Inspector
Search vendor "Trendmicro" for product "Deep Discovery Inspector"
3.8
Search vendor "Trendmicro" for product "Deep Discovery Inspector" and version "3.8"
-
Affected
Trendmicro
Search vendor "Trendmicro"
Interscan Messaging Security Virtual Appliance
Search vendor "Trendmicro" for product "Interscan Messaging Security Virtual Appliance"
9.1
Search vendor "Trendmicro" for product "Interscan Messaging Security Virtual Appliance" and version "9.1"
-
Affected
Trendmicro
Search vendor "Trendmicro"
Interscan Web Security Virtual Appliance
Search vendor "Trendmicro" for product "Interscan Web Security Virtual Appliance"
6.5
Search vendor "Trendmicro" for product "Interscan Web Security Virtual Appliance" and version "6.5"
-
Affected