ZDI-23-998: Trend Micro Apex Central modTMSL Server-Side Request Forgery Vulnerability
Published Jul 26, 2023
·Updated
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Trend Micro Apex Central. Authentication is required to exploit this vulnerability.
Affected Software
1 affected component
Trend Micro Apex Central
Event History
Jul 26, 2023
Advisory Published
05:00 AM
Data Sourced
05:00 AM
Description
Jan 23, 2024
Advisory Published
via ZDI·08:39 PM
Frequently Asked Questions
1
What is the severity of ZDI-23-998?
The severity of ZDI-23-998 is categorized as medium due to the need for authentication to exploit the vulnerability.
2
How do I fix ZDI-23-998?
To fix ZDI-23-998, ensure that your Trend Micro Apex Central is updated to the latest version that addresses this vulnerability.
3
What kind of information can be disclosed by exploiting ZDI-23-998?
Exploiting ZDI-23-998 can lead to the disclosure of sensitive information on affected installations of Trend Micro Apex Central.
4
Is authentication required to exploit ZDI-23-998?
Yes, authentication is required to exploit the ZDI-23-998 vulnerability.
5
Which software is affected by ZDI-23-998?
ZDI-23-998 affects Trend Micro Apex Central installations.