CVE-2023-32521: Path Traversal
A path traversal exists in a specific service dll of Trend Micro Mobile Security (Enterprise) 9.8 SP5 which could allow an unauthenticated remote attacker to delete arbitrary files.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-32521?
CVE-2023-32521 is a path traversal vulnerability in a specific service dll of Trend Micro Mobile Security (Enterprise) 9.8 SP5, which could allow an unauthenticated remote attacker to delete arbitrary files.
What is the severity of CVE-2023-32521?
The severity of CVE-2023-32521 is critical, with a CVSS score of 9.1.
How can an unauthenticated remote attacker exploit CVE-2023-32521?
An unauthenticated remote attacker can exploit CVE-2023-32521 by performing a path traversal attack to delete arbitrary files using a specific service dll in Trend Micro Mobile Security (Enterprise) 9.8 SP5.
Is there a patch available for CVE-2023-32521?
Yes, a patch is available for CVE-2023-32521. It is recommended to update to a fixed version of Trend Micro Mobile Security (Enterprise) 9.8 SP5 or later.
Where can I find more information about CVE-2023-32521?
You can find more information about CVE-2023-32521 on the Trend Micro website at https://success.trendmicro.com/dcx/s/solution/000293106?language=en_US and the Tenable Security Research page at https://www.tenable.com/security/research/tra-2023-17.