ZDI-CAN-24932: ZDI-25-008: Trend Micro Deep Security Agent Incorrect Permissions Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Trend Micro Deep Security Agent. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. Subsequent user interaction on the part of an administrator is additionally required. The ZDI has assigned a CVSS rating of 6.7. The following CVEs are assigned: CVE-2024-55955.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-24932?
The severity of ZDI-CAN-24932 is classified as high due to its potential to allow local privilege escalation.
How do I fix ZDI-CAN-24932?
To fix ZDI-CAN-24932, ensure that you apply the latest security updates and patches provided by Trend Micro for Deep Security Agent.
What kind of attacks can ZDI-CAN-24932 facilitate?
ZDI-CAN-24932 can facilitate local privilege escalation attacks if exploited by an attacker with low-privileged code execution capabilities.
What versions of Trend Micro Deep Security Agent are affected by ZDI-CAN-24932?
ZDI-CAN-24932 affects all currently supported versions of Trend Micro Deep Security Agent.
Who is at risk from the ZDI-CAN-24932 vulnerability?
Local users with the capability to execute low-privileged code on systems running Trend Micro Deep Security Agent are at risk from ZDI-CAN-24932.