CVE-2019-9490: Trend Micro Interscan Web Security Virtual Appliance

High severity, CVSS 8.8. EPSS: 1.5% chance of exploitation in the next 30 days.

A vulnerability in Trend Micro InterScan Web Security Virtual Appliance version 6.5 SP2 could allow an non-authorized user to disclose administrative credentials. An attacker must be an authenticated user in order to exploit the vulnerability.

Affected products

  • Trend Micro Interscan Web Security Virtual Appliance: version 6.5 only

Published 2019-04-05. Last modified 2026-06-17.