Trend Micro Apex One (2019) and OfficeScan XG server contain a vulnerable EXE file that could allow a remote attacker to write arbitrary data to an arbitrary path on affected installations and bypass ROOT login. Authentication is not required to exploit this vulnerability.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Apex_one | Trendmicro | 2019 (including) | 2019 (including) |
Officescan | Trendmicro | xg (including) | xg (including) |
Officescan | Trendmicro | xg-sp1 (including) | xg-sp1 (including) |