CVE-2017-14089: Trend Micro OfficeScan

Critical severity, CVSS 9.8. EPSS: 9.8% chance of exploitation in the next 30 days.

An Unauthorized Memory Corruption vulnerability in Trend Micro OfficeScan 11.0 and XG may allow remote unauthenticated users who can access the OfficeScan server to target cgiShowClientAdm.exe and cause memory corruption issues.

Affected products

  • Trend Micro OfficeScan: version 11.0 only; version 12.0 only

Published 2017-10-06. Last modified 2026-06-17.