PT-2024-33260 · Trend Micro · Trend Micro Deep Security Agent

Abdelhamid Naceri

·

Published

2024-10-17

·

Updated

2025-07-31

·

CVE-2024-48903

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Trend Micro Deep Security Agent version 20
Description An improper access control vulnerability could allow a local attacker to escalate privileges on affected installations. To exploit this issue, an attacker must first obtain the ability to execute low-privileged code on the target system.
Recommendations For Trend Micro Deep Security Agent version 20, apply the necessary patch or update to fix the improper access control vulnerability. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2024-48903
ZDI-24-1419

Affected Products

Trend Micro Deep Security Agent