CVE-2022-25330: Integer Overflow
Published Feb 24, 2022
·Updated
Integer overflow conditions that exist in Trend Micro ServerProtect 6.0/5.8 Information Server could allow a remote attacker to crash the process or achieve remote code execution.
Affected Software
6 affected components
trendmicro Serverprotect Emc=5.8
trendmicro Serverprotect Netware=5.8
trendmicro Serverprotect Windows=5.8
trendmicro Serverprotect For Network Appliance Filer=5.8
trendmicro Serverprotect For Storage=6.0
Microsoft Windows
Remediation
Patch Available
Event History
Feb 24, 2022
CVE Published
via MITRE·02:45 AM
Data Sourced
via MITRE·02:45 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2022-25330?
CVE-2022-25330 is an integer overflow vulnerability that exists in Trend Micro ServerProtect 6.0/5.8 Information Server.
2
What can a remote attacker achieve with CVE-2022-25330?
A remote attacker can crash the process or achieve remote code execution.
3
What is the severity of CVE-2022-25330?
CVE-2022-25330 has a severity rating of 9.8 (Critical).
4
How does CVE-2022-25330 impact Trend Micro ServerProtect?
CVE-2022-25330 impacts Trend Micro ServerProtect 6.0/5.8 Information Server, potentially allowing remote code execution or crashing the process.
5
How can I fix CVE-2022-25330?
To mitigate CVE-2022-25330, it is recommended to apply the security patches or updates provided by Trend Micro.