CVE-2018-3600: Trend Micro Control Manager

Medium severity, CVSS 6.5. EPSS: 1.7% chance of exploitation in the next 30 days.

A external entity processing information disclosure (XXE) vulnerability in Trend Micro Control Manager 6.0 could allow a remote attacker to disclose sensitive information on vulnerable installations.

Affected products

Published 2018-02-09. Last modified 2026-06-17.