CVE-2020-8467: Trend Micro Apex One and OfficeScan Remote Code Execution Vulnerability
A migration tool component of Trend Micro Apex One (2019) and OfficeScan XG contains a vulnerability which could allow remote attackers to execute arbitrary code on affected installations (RCE). An attempted attack requires user authentication.
Other sources
Trend Micro Apex One and OfficeScan contain an unspecified vulnerability within a migration tool component that allows for remote code execution.
— CISA
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-8467?
CVE-2020-8467 is a remote code execution vulnerability in Trend Micro Apex One and OfficeScan.
How severe is CVE-2020-8467?
CVE-2020-8467 has a severity rating of 8.8, which is considered high.
Which software is affected by CVE-2020-8467?
Trend Micro Apex One (2019) and OfficeScan XG (including XG SP1) are affected by CVE-2020-8467.
How can CVE-2020-8467 be exploited?
CVE-2020-8467 can be exploited by remote attackers to execute arbitrary code on affected installations.
Where can I find more information about CVE-2020-8467?
You can find more information about CVE-2020-8467 on the Trend Micro website.