CVE Vulnerabilities

CVE-2020-8602

Published: Aug 27, 2020 | Modified: Jul 21, 2021
CVSS 3.x
7.2
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

A vulnerability in the management consoles of Trend Micro Deep Security 10.0-12.0 and Trend Micro Vulnerability Protection 2.0 SP2 may allow an authenticated attacker with full control privileges to bypass file integrity checks, leading to remote code execution.

Affected Software

Name Vendor Start Version End Version
Deep_security_manager Trendmicro 10.0 (including) 10.0 (including)
Deep_security_manager Trendmicro 11.0 (including) 11.0 (including)
Deep_security_manager Trendmicro 12.0 (including) 12.0 (including)
Vulnerability_protection Trendmicro 2.0-sp2 (including) 2.0-sp2 (including)

References