CVE-2023-52327: Trend Micro Apex Central Cross-Site Scripting Remote Code Execution Vulnerability
Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks that may allow an attacker to achieve remote code execution on affected servers. Please note this vulnerability is similar, but not identical to CVE-2023-52328.
Other sources
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trend Micro Apex Central. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of the multiple parameters provided to the modDLPViolationCntdrildown.php component. The issue results from the lack of proper validation of user-supplied data, which can lead to the injection of arbitrary script. An attacker can leverage this vulnerability to execute script in the context of the current user.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-52327?
CVE-2023-52327 has a high severity rating due to the potential for remote code execution via cross-site scripting attacks.
How do I fix CVE-2023-52327?
To fix CVE-2023-52327, update to the latest version of Trend Micro Apex Central that addresses this vulnerability.
What versions of Trend Micro Apex Central are affected by CVE-2023-52327?
CVE-2023-52327 affects the 2019 version of Trend Micro Apex Central on Windows.
What potential impact does CVE-2023-52327 have on affected systems?
CVE-2023-52327 may allow attackers to execute arbitrary code on affected servers through XSS vulnerabilities.
Is CVE-2023-52327 related to other vulnerabilities?
Yes, CVE-2023-52327 is similar to CVE-2023-52328 but details on their differences can be found in their respective advisories.