CVE-2022-44650: Trend Micro Apex One Unauthorized Change Prevention Service Memory Corruption Local Privilege Escalation Vulnerability
A memory corruption vulnerability in the Unauthorized Change Prevention service of Trend Micro Apex One and Apex One as a Service could allow a local attacker to elevate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Other sources
This vulnerability allows local attackers to escalate privileges on affected installations of Trend Micro Apex One Security Agent. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the Unauthorized Change Prevention Service. A crafted request can trigger a write past the end of an allocated data structure. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-44650?
CVE-2022-44650 is a vulnerability in Trend Micro Apex One Security Agent that allows local attackers to escalate privileges on affected installations.
How can I exploit CVE-2022-44650?
To exploit CVE-2022-44650, an attacker must first gain the ability to execute low-privileged code on the target system.
Which versions of Trend Micro Apex One are affected by CVE-2022-44650?
Versions up to and including 14.0.11789 of Trend Micro Apex One are affected by CVE-2022-44650.
Is Microsoft Windows affected by CVE-2022-44650?
No, Microsoft Windows is not vulnerable to CVE-2022-44650.
What is the severity of CVE-2022-44650?
CVE-2022-44650 has a severity score of 7.8, which is considered high.