Trend Micro Apex One
cpe:2.3:a:trendmicro:apex_one:*:*:*:*:*:*:*, +2 more
- 2019 (On-prem)
- SaaS
A link following vulnerability has been identified in the Trend Micro Apex One Damage Cleanup Engine, which could allow a local attacker to escalate privileges on affected installations. This vulnerability requires the attacker to first execute low-privileged code on the target system.
Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a local attacker to execute arbitrary code with SYSTEM privileges on the affected system.
Trend Micro has released a patch for this vulnerability in both Apex One and Apex One as a Service. Users can download the updated version of Apex One from the Trend Micro Download Center. For Apex One as a Service, the updated Security Agent version is available now.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.