PT-2021-16477 · Trend Micro · Trend Micro Apex One+2
Elias Martinez
+1
·
Published
2021-01-29
·
Updated
2021-02-05
·
CVE-2021-25239
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Trend Micro Apex One (on-prem) version not specified
OfficeScan XG version SP1
Worry-Free Business Security version 10.0 SP1
Description:
An improper access control issue could allow an unauthenticated user to obtain information about x86 agent hotfixes.
Recommendations:
For Trend Micro Apex One (on-prem), update to a version that addresses the improper access control issue.
For OfficeScan XG SP1, apply the necessary patch or update to resolve the access control vulnerability.
For Worry-Free Business Security 10.0 SP1, consider restricting access to sensitive information until a fix is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Officescan Xg
Trend Micro Apex One
Worry-Free Business Security