Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-32557


A path traversal vulnerability in the Trend Micro Apex One and Apex One as a Service could allow an unauthenticated attacker to upload an arbitrary file to the Management Server which could lead to remote code execution with system privileges.


Published

2023-06-26T22:15:10.977

Last Modified

2024-11-21T08:03:35.743

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-22

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application trendmicro apex_one < 14.0.12105 Yes
Application trendmicro apex_one 2019 Yes
Operating System microsoft windows - No

References