ZDI-CAN-22968: ZDI-24-897: Trend Micro Apex One modOSCE SQL Injection Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trend Micro Apex One. Authentication is required to exploit this vulnerability. The specific flaw exists within the client management functionality. The issue results from the lack of proper validation of a user-supplied string before using it to construct SQL queries. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of IUSR.
Other sources
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trend Micro Apex One. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.5. The following CVEs are assigned: CVE-2024-39753.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-22968?
The severity of ZDI-CAN-22968 is classified as high due to the potential for remote code execution.
How do I fix ZDI-CAN-22968?
To fix ZDI-CAN-22968, update Trend Micro Apex One to the latest version that includes security patches.
Who is affected by ZDI-CAN-22968?
ZDI-CAN-22968 affects installations of Trend Micro Apex One that are not updated with the latest security patches.
Is authentication required to exploit ZDI-CAN-22968?
Yes, authentication is required to exploit the vulnerability ZDI-CAN-22968.
What type of attack does ZDI-CAN-22968 enable?
ZDI-CAN-22968 enables remote attackers to execute arbitrary code on the affected system.