7.8
CVE-2024-41183
- EPSS 0.15%
- Published 22.10.2024 19:15:05
- Last modified 31.07.2025 16:14:21
- Source security@trendmicro.com
- Teams watchlist Login
- Open Login
Trend Micro VPN, version 5.8.1012 and below is vulnerable to an arbitrary file overwrite under specific conditions that can lead to elevation of privileges.
Data is provided by the National Vulnerability Database (NVD)
Trendmicro ≫ Vpn SwPlatformwindows Version < 5.8.1030
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.15% | 0.365 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
security@trendmicro.com | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-73 External Control of File Name or Path
The product allows user input to control or influence paths or file names that are used in filesystem operations.