Описание
An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations.
Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 14.0.0.17079 (исключая)Версия до 14.0.20731 (исключая)
Одно из
cpe:2.3:a:trendmicro:apex_one:*:*:*:*:on-premises:windows:*:*
cpe:2.3:a:trendmicro:apex_one:*:*:*:*:saas:windows:*:*
EPSS
Процентиль: 16%
0.00246
Низкий
7.8 High
CVSS3
Дефекты
CWE-346
Связанные уязвимости
CVSS3: 7.8
github
3 месяца назад
An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
CVSS3: 7.8
fstec
9 месяцев назад
Уязвимость агента антивирусного программного средства Trend Micro Apex One, позволяющая нарушителю повысить свои привилегии
EPSS
Процентиль: 16%
0.00246
Низкий
7.8 High
CVSS3
Дефекты
CWE-346