CVE-2019-9492: Trend Micro OfficeScan

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

A DLL side-loading vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow an authenticated attacker to gain code execution and terminate the product's process - disabling endpoint protection. The attacker must have already gained authentication and have local access to the vulnerable system.

Affected products

  • Trend Micro OfficeScan: version 11.0 only; version xg only

Published 2019-07-26. Last modified 2026-06-17.