ZDI-23-053: Trend Micro Maximum Security Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability
Published Jan 18, 2023
·Updated
This vulnerability allows local attackers to escalate privileges on affected installations of Trend Micro Maximum Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Affected Software
1 affected component
Trend Micro Maximum Security
Event History
Jan 18, 2023
Advisory Published
06:00 AM
Data Sourced
06:00 AM
Description
Jan 30, 2025
Advisory Published
via ZDI·05:34 AM
Frequently Asked Questions
1
What is the vulnerability ID for this Trend Micro Maximum Security vulnerability?
The vulnerability ID is ZDI-23-053.
2
What is the severity of the ZDI-23-053 vulnerability?
The severity of the ZDI-23-053 vulnerability is high with a CVSS score of 7.8.
3
How can an attacker exploit this vulnerability?
An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit the ZDI-23-053 vulnerability.
4
What is affected by the ZDI-23-053 vulnerability?
The ZDI-23-053 vulnerability affects installations of Trend Micro Maximum Security.
5
Is there a fix available for the ZDI-23-053 vulnerability?
Yes, a fix for the ZDI-23-053 vulnerability is available. It is recommended to update to the latest version of Trend Micro Maximum Security.