CVE-2025-30642: Trend Micro Deep Security Agent Link Following Denial-of-Service Vulnerability
A link following vulnerability in Trend Micro Deep Security 20.0 agents could allow a local attacker to create a denial of service (DoS) situation on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Other sources
This vulnerability allows local attackers to create a denial-of-service condition on affected installations of Trend Micro Deep Security Agent. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the Damage Cleanup Engine. By creating a junction, an attacker can abuse this component to delete a file. An attacker can leverage this vulnerability to create a denial-of-service condition on the system.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-30642?
CVE-2025-30642 is classified as a medium severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2025-30642?
To fix CVE-2025-30642, users should apply the latest security updates provided by Trend Micro for Deep Security.
What type of attack does CVE-2025-30642 facilitate?
CVE-2025-30642 facilitates a denial of service attack that can hinder the functionality of affected installations.
Who is affected by CVE-2025-30642?
CVE-2025-30642 affects installations of Trend Micro Deep Security 20.0 agents.
What conditions are needed for exploiting CVE-2025-30642?
An attacker needs to have the ability to execute low-privileged code on the target system to exploit CVE-2025-30642.