CVE-2022-41746
- EPSS 0.62%
- Veröffentlicht 10.10.2022 21:15:11
- Zuletzt bearbeitet 21.11.2024 07:23:46
A forced browsing vulnerability in Trend Micro Apex One could allow an attacker with access to the Apex One console on affected installations to escalate privileges and modify certain agent groupings. Please note: an attacker must first obtain the ab...
CVE-2022-41747
- EPSS 0.07%
- Veröffentlicht 10.10.2022 21:15:11
- Zuletzt bearbeitet 21.11.2024 07:23:47
An improper certification validation vulnerability in Trend Micro Apex One agents could allow a local attacker to load a DLL file with system service privileges on affected installations. Please note: an attacker must first obtain the ability to exec...
CVE-2022-40140
- EPSS 0.14%
- Veröffentlicht 19.09.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:20:57
An origin validation error vulnerability in Trend Micro Apex One and Apex One as a Service could allow a local attacker to cause a denial-of-service on affected installations. Please note: an attacker must first obtain the ability to execute low-priv...
CVE-2022-40141
- EPSS 0.35%
- Veröffentlicht 19.09.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:20:57
A vulnerability in Trend Micro Apex One and Apex One as a Service could allow an attacker to intercept and decode certain communication strings that may contain some identification attributes of a particular Apex One server.
CVE-2022-40142
- EPSS 0.07%
- Veröffentlicht 19.09.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:20:58
A security link following local privilege escalation vulnerability in Trend Micro Apex One and Trend Micro Apex One as a Service agents could allow a local attacker to create a writable folder in an arbitrary location and escalate privileges on affec...
CVE-2022-40143
- EPSS 0.08%
- Veröffentlicht 19.09.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:20:58
A link following local privilege escalation vulnerability in Trend Micro Apex One and Trend Micro Apex One as a Service servers could allow a local attacker to abuse an insecure directory that could allow a low-privileged user to run arbitrary code w...
CVE-2022-40144
- EPSS 0.49%
- Veröffentlicht 19.09.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:20:58
A vulnerability in Trend Micro Apex One and Trend Micro Apex One as a Service could allow an attacker to bypass the product's login authentication by falsifying request parameters on affected installations.
CVE-2022-40139
- EPSS 13.44%
- Veröffentlicht 19.09.2022 18:15:09
- Zuletzt bearbeitet 31.10.2025 18:42:22
Improper validation of some components used by the rollback mechanism in Trend Micro Apex One and Trend Micro Apex One as a Service clients could allow a Apex One server administrator to instruct affected clients to download an unverified rollback pa...
CVE-2022-36336
- EPSS 0.07%
- Veröffentlicht 30.07.2022 00:15:08
- Zuletzt bearbeitet 21.11.2024 07:12:48
A link following vulnerability in the scanning function of Trend Micro Apex One and Worry-Free Business Security agents could allow a local attacker to escalate privileges on affected installations. The resolution for this issue has been deployed aut...
CVE-2022-30700
- EPSS 0.06%
- Veröffentlicht 27.05.2022 00:15:08
- Zuletzt bearbeitet 21.11.2024 07:03:11
An incorrect permission assignment vulnerability in Trend Micro Apex One and Apex One as a Service could allow a local attacker to load a DLL with escalated privileges on affected installations. Please note: an attacker must first obtain the ability ...