CVE-2022-40980: Critical severity trendmicro Mobile Security vulnerability
A potential unathenticated file deletion vulnerabilty on Trend Micro Mobile Security for Enterprise 9.8 SP5 could allow an attacker with access to the Management Server to delete files. This issue was resolved in 9.8 SP5 Critical Patch 2.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Trend Micro Mobile Security for Enterpriseto a version that resolves this vulnerability.Fixed in 9.8 SP5 Critical Patch 2
Event History
Frequently Asked Questions
What is the vulnerability ID for this potential file deletion vulnerability?
The vulnerability ID for this potential file deletion vulnerability is CVE-2022-40980.
What is the severity level of CVE-2022-40980?
The severity level of CVE-2022-40980 is critical with a severity value of 9.1.
Which software version is affected by CVE-2022-40980?
CVE-2022-40980 affects Trend Micro Mobile Security for Enterprise 9.8 SP5.
How can an attacker exploit CVE-2022-40980?
An attacker with access to the Management Server can exploit CVE-2022-40980 by deleting files.
How was CVE-2022-40980 resolved?
CVE-2022-40980 was resolved in Trend Micro Mobile Security for Enterprise 9.8 SP5 Critical Patch 2.