CVE-2022-41749: Trend Micro Apex One Origin Validation Error Local Privilege Escalation Vulnerability
An origin validation error vulnerability in Trend Micro Apex One agents could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-41749?
CVE-2022-41749 is a vulnerability in Trend Micro Apex One Security Agent that allows local attackers to escalate privileges on affected installations.
How can this vulnerability be exploited?
To exploit CVE-2022-41749, an attacker must first obtain the ability to execute low-privileged code on the target system.
What is the severity of CVE-2022-41749?
The severity of CVE-2022-41749 is high, with a CVSS score of 7.8.
Which software versions are affected by CVE-2022-41749?
Trend Micro Apex One versions 2019 and Apex Central are affected by CVE-2022-41749.
How can I fix CVE-2022-41749?
To fix CVE-2022-41749, update to the latest version of Trend Micro Apex One Security Agent and follow the recommendations provided by Trend Micro.