PT-2024-14523 · Trend Micro · Trend Micro Apex Central

Poh Jia Hao

·

Published

2024-01-19

·

Updated

2024-01-30

·

CVE-2023-52324

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Trend Micro Apex Central (affected versions not specified)
Description An unrestricted file upload vulnerability could allow a remote attacker to create arbitrary files on affected installations. Although authentication is required to exploit this issue, it could be exploited when the attacker has any valid set of credentials. This issue could be potentially used in combination with another vulnerability to execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-52324
ZDI-24-077

Affected Products

Trend Micro Apex Central