CVE-2020-28572: High severity trend micro apex one vulnerability
Published Nov 18, 2020
·Updated
A vulnerability in Trend Micro Apex One could allow an unprivileged user to abuse the product installer to reinstall the agent with additional malicious code in the context of a higher privilege.
Affected Software
2 affected components
trendmicro Apex One=2019
Microsoft Windows
Event History
Nov 18, 2020
CVE Published
via MITRE·06:45 PM
Data Sourced
via MITRE·06:45 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-28572?
CVE-2020-28572 has a severity rating of medium, indicating a significant but manageable risk.
2
How do I fix CVE-2020-28572?
To fix CVE-2020-28572, ensure that you are using the latest version of Trend Micro Apex One and apply any available patches.
3
Who is affected by CVE-2020-28572?
CVE-2020-28572 affects users of Trend Micro Apex One version 2019.
4
What type of vulnerability is CVE-2020-28572?
CVE-2020-28572 is an installation privilege escalation vulnerability.
5
What impact does CVE-2020-28572 have on Trend Micro Apex One?
CVE-2020-28572 allows an unprivileged user to reinstall the agent with additional malicious code, compromising higher privileges.