Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6wwx-mc3p-m6jg

Опубликовано: 12 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

An arbitrary file deletion vulnerability in the Damage Cleanup Engine component of Trend Micro Apex One and Trend Micro Apex One as a Service could allow a local attacker to escalate privileges and delete files on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

An arbitrary file deletion vulnerability in the Damage Cleanup Engine component of Trend Micro Apex One and Trend Micro Apex One as a Service could allow a local attacker to escalate privileges and delete files on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

EPSS

Процентиль: 56%
0.00339
Низкий

7.1 High

CVSS3

Связанные уязвимости

CVSS3: 7.1
nvd
около 3 лет назад

An arbitrary file deletion vulnerability in the Damage Cleanup Engine component of Trend Micro Apex One and Trend Micro Apex One as a Service could allow a local attacker to escalate privileges and delete files on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVSS3: 7.5
fstec
около 3 лет назад

Уязвимость компонента Damage Cleanup Engine антивирусных программных средств Trend Micro Apex One и Apex One as a Service, позволяющая нарушителю повысить свои привилегии и удалить произвольные файлы

EPSS

Процентиль: 56%
0.00339
Низкий

7.1 High

CVSS3