PT-2024-14523 · Trend Micro · Trend Micro Apex Central
Poh Jia Hao
·
Published
2024-01-19
·
Updated
2024-01-30
·
CVE-2023-52324
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Trend Micro Apex Central (affected versions not specified)
Description
An unrestricted file upload vulnerability could allow a remote attacker to create arbitrary files on affected installations. Although authentication is required to exploit this issue, it could be exploited when the attacker has any valid set of credentials. This issue could be potentially used in combination with another vulnerability to execute arbitrary code.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this issue.
Fix
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Trend Micro Apex Central