High severity8.1NVD Advisory· Published Aug 27, 2020· Updated Jun 17, 2026
CVE-2020-15601
CVE-2020-15601
Description
If LDAP authentication is enabled, an LDAP authentication bypass vulnerability in Trend Micro Deep Security 10.x-12.x could allow an unauthenticated attacker with prior knowledge of the targeted organization to bypass manager authentication. Enabling multi-factor authentication prevents this attack. Installations using manager native authentication or SAML authentication are not impacted by this vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:trendmicro:deep_security_manager:10.0:-:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:trendmicro:deep_security_manager:10.0:-:*:*:*:*:*:*
- cpe:2.3:a:trendmicro:deep_security_manager:11.0:-:*:*:*:*:*:*
- cpe:2.3:a:trendmicro:deep_security_manager:12.0:-:*:*:*:*:*:*
- cpe:2.3:a:trendmicro:vulnerability_protection:2.0:sp2:*:*:*:*:*:*
- Range: 10.x-12.x
- Range: 10.0, 11.0, 12.0
Patches
Vulnerability mechanics
References
2- success.trendmicro.com/solution/000252039nvdPatchVendor Advisory
- www.zerodayinitiative.com/advisories/ZDI-20-1077/nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.