An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 14.0.0.14136CPE matchmatch criteria | cpe:2.3:a:trendmicro:apex_one:*:*:*:*:on-premises:windows:*:* | ||
< 14.0.20315CPE matchmatch criteria | cpe:2.3:a:trendmicro:apex_one:*:*:*:*:saas:windows:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.