CVE-2021-45231: Trend Micro Apex One Link Following Privilege Escalation Vulnerability
A link following privilege escalation vulnerability in Trend Micro Apex One (on-prem and SaaS) and Trend Micro Worry-Free Business Security (10.0 SP1 and Services) could allow a local attacker to create a specially crafted file with arbitrary content which could grant local privilege escalation on the affected system. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Other sources
This vulnerability allows local attackers to escalate privileges on affected installations of Trend Micro Apex One Security Agent. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the Real-time Scan Service. By creating a symbolic link, an attacker can abuse the service to overwrite a file. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2021-45231?
The severity of CVE-2021-45231 is high with a CVSS score of 7.8.
How does the vulnerability CVE-2021-45231 allow privilege escalation?
The vulnerability CVE-2021-45231 allows local attackers to escalate privileges on affected installations of Trend Micro Apex One Security Agent by executing low-privileged code on the target system.
Which software is affected by CVE-2021-45231?
The software affected by CVE-2021-45231 includes Trend Micro Apex One and Worry-Free Business Security.
How can I fix CVE-2021-45231?
To fix CVE-2021-45231, it is recommended to install the latest security updates provided by Trend Micro.
Where can I find more information about CVE-2021-45231?
For more information about CVE-2021-45231, you can refer to the following references: [link1](https://success.trendmicro.com/solution/000289996), [link2](https://www.zerodayinitiative.com/advisories/ZDI-22-013/).