CVE Vulnerabilities

CVE-2020-8602

Published: Aug 27, 2020 | Modified: Nov 21, 2024
CVSS 3.x
7.2
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A vulnerability in the management consoles of Trend Micro Deep Security 10.0-12.0 and Trend Micro Vulnerability Protection 2.0 SP2 may allow an authenticated attacker with full control privileges to bypass file integrity checks, leading to remote code execution.

Affected Software

NameVendorStart VersionEnd Version
Deep_security_managerTrendmicro10.0 (including)10.0 (including)
Deep_security_managerTrendmicro11.0 (including)11.0 (including)
Deep_security_managerTrendmicro12.0 (including)12.0 (including)
Vulnerability_protectionTrendmicro2.0-sp2 (including)2.0-sp2 (including)

References