QID 375757
Date Published: 2021-08-02
QID 375757: Trend Micro Apex One(On-Prem) Multiple Vulnerabilities(000263632)(August 2020)
Trend Micro Apex One protection offers advanced automated threat detection and response against an ever-growing variety of threats, including file-less and ransomware.
CVE-2020-24556 and CVE-2020-24562: Trend Micro Apex One Hard Link Privilege Escalation Vulnerability (Windows)
CVE-2020-24557: Trend Micro Apex One and OfficeScan XG Improper Access Control Privilege Escalation
CVE-2020-24559: Trend Micro Apex One Hard Link Privilege Escalation Vulnerability (macOS)
Affected Versions
Trend Micro Apex 2019 (On-Prem) prior to Build 8378
QID Detection Logic:(Authenticated):
The QID checks for vulnerable version of Trend Micro Apex which it fetches out through registry file.
Successful exploitation would allow an authenticated attacker to privilege escalation, out-of-bounds read information disclosure and improper access control.
- 000263632 -
success.trendmicro.com/solution/000263632
CVEs related to QID 375757
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 000263632 |
|