First published: Mon Sep 19 2022(Updated: )
A vulnerability in Trend Micro Apex One and Trend Micro Apex One as a Service could allow an attacker to bypass the product's login authentication by falsifying request parameters on affected installations.
Credit: security@trendmicro.com
Affected Software | Affected Version | How to fix |
---|---|---|
Trendmicro Apex One | ||
Trendmicro Apex One | =2019 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-40144.
The severity of CVE-2022-40144 is critical with a CVSS score of 9.8.
The affected software of CVE-2022-40144 includes Trend Micro Apex One and Trend Micro Apex One as a Service.
An attacker can exploit CVE-2022-40144 by falsifying request parameters to bypass the product's login authentication.
Yes, you can find official references for CVE-2022-40144 at the following links: [Link 1](https://appweb.trendmicro.com/SupportNews/NewsDetail.aspx?id=4553), [Link 2](https://jvn.jp/en/jp/JVN36454862/index.html), [Link 3](https://success.trendmicro.com/solution/000291528).