QID 378868
Date Published: 2023-09-20
QID 378868: Trend Micro Apex One Arbitrary Code Execution Vulnerability (000294994)
Trend Micro Apex One protection offers advanced automated threat detection and response against an ever-growing variety of threats, including file-less and ransomware.
CVE-2023-41179: Vulnerability in the 3rd party AV uninstaller module contained in Trend Micro Apex One could allow an attacker to manipulate the module to execute arbitrary commands on an affected installation.
Note:
Attacker must first obtain administrative console access on the target system in order to exploit this vulnerability.
Affected Versions:
Trend Micro Apex One 2019 (On-Prem) prior to Build 12380
QID Detection Logic:(Authenticated):
This QID checks for installed vulnerable version of Trend Micro Apex One.
Successful exploitation of this vulnerability may allow an attacker with administrative console access to execute arbitrary code on the target system.
- Trend Micro Security Advisory (000294994) -
success.trendmicro.com/dcx/s/solution/000294994?language=en_US
CVEs related to QID 378868
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Trend Micro Security Advisory (000294994) |
|