Trend Micro Apex One (2019) and OfficeScan XG server contain a vulnerable EXE file that could allow a remote attacker to write arbitrary data to an arbitrary path on affected installations and bypass ROOT login. Authentication is not required to exploit this vulnerability.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Apex_one | Trendmicro | 2019 (including) | 2019 (including) |
| Officescan | Trendmicro | xg (including) | xg (including) |
| Officescan | Trendmicro | xg-sp1 (including) | xg-sp1 (including) |