CVE-2020-24562: Trend Micro OfficeScan Hard Link Privilege Escalation Vulnerability
A vulnerability in Trend Micro OfficeScan XG SP1 on Microsoft Windows may allow an attacker to create a hard link to any file on the system, which then could be manipulated to gain a privilege escalation and code execution. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. This CVE is similar, but not identical to CVE-2020-24556.
Other sources
This vulnerability allows local attackers to escalate privileges on affected installations of Trend Micro OfficeScan. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the OfficeScan Security Agent. By creating a hard link, an attacker can abuse the service to overwrite the contents of a chosen file. An attacker can leverage this vulnerability to escalate privileges and execute code as an administrator.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-24562.
What is the severity of CVE-2020-24562?
The severity of CVE-2020-24562 is high, with a severity value of 7.8.
What software is affected by CVE-2020-24562?
The affected software is Trend Micro OfficeScan.
How can this vulnerability be exploited?
This vulnerability can be exploited by local attackers who have obtained the ability to execute low-privileged code on the target system.
Is Microsoft Windows vulnerable to CVE-2020-24562?
No, Microsoft Windows is not vulnerable to CVE-2020-24562.