A code injection vulnerability in Trend Micro Deep Security and Cloud One - Workload Security Agent for Linux version 20 and below could allow an attacker to escalate privileges and run arbitrary code in the context of root. Please note: an attacker must first obtain access to the target agent in an un-activated and unconfigured state in order to exploit this vulnerability.
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Deep_security_agent | Trendmicro | 20.0 (including) | 20.0.0-3445 (excluding) |
Deep_security_agent | Trendmicro | 10.0 (including) | 10.0 (including) |
Deep_security_agent | Trendmicro | 10.0-update1 (including) | 10.0-update1 (including) |
Deep_security_agent | Trendmicro | 10.0-update10 (including) | 10.0-update10 (including) |
Deep_security_agent | Trendmicro | 10.0-update11 (including) | 10.0-update11 (including) |
Deep_security_agent | Trendmicro | 10.0-update12 (including) | 10.0-update12 (including) |
Deep_security_agent | Trendmicro | 10.0-update13 (including) | 10.0-update13 (including) |
Deep_security_agent | Trendmicro | 10.0-update14 (including) | 10.0-update14 (including) |
Deep_security_agent | Trendmicro | 10.0-update15 (including) | 10.0-update15 (including) |
Deep_security_agent | Trendmicro | 10.0-update16 (including) | 10.0-update16 (including) |
Deep_security_agent | Trendmicro | 10.0-update17 (including) | 10.0-update17 (including) |
Deep_security_agent | Trendmicro | 10.0-update18 (including) | 10.0-update18 (including) |
Deep_security_agent | Trendmicro | 10.0-update19 (including) | 10.0-update19 (including) |
Deep_security_agent | Trendmicro | 10.0-update2 (including) | 10.0-update2 (including) |
Deep_security_agent | Trendmicro | 10.0-update20 (including) | 10.0-update20 (including) |
Deep_security_agent | Trendmicro | 10.0-update21 (including) | 10.0-update21 (including) |
Deep_security_agent | Trendmicro | 10.0-update22 (including) | 10.0-update22 (including) |
Deep_security_agent | Trendmicro | 10.0-update23 (including) | 10.0-update23 (including) |
Deep_security_agent | Trendmicro | 10.0-update24 (including) | 10.0-update24 (including) |
Deep_security_agent | Trendmicro | 10.0-update25 (including) | 10.0-update25 (including) |
Deep_security_agent | Trendmicro | 10.0-update26 (including) | 10.0-update26 (including) |
Deep_security_agent | Trendmicro | 10.0-update27 (including) | 10.0-update27 (including) |
Deep_security_agent | Trendmicro | 10.0-update28 (including) | 10.0-update28 (including) |
Deep_security_agent | Trendmicro | 10.0-update29 (including) | 10.0-update29 (including) |
Deep_security_agent | Trendmicro | 10.0-update3 (including) | 10.0-update3 (including) |
Deep_security_agent | Trendmicro | 10.0-update30 (including) | 10.0-update30 (including) |
Deep_security_agent | Trendmicro | 10.0-update31 (including) | 10.0-update31 (including) |
Deep_security_agent | Trendmicro | 10.0-update4 (including) | 10.0-update4 (including) |
Deep_security_agent | Trendmicro | 10.0-update5 (including) | 10.0-update5 (including) |
Deep_security_agent | Trendmicro | 10.0-update6 (including) | 10.0-update6 (including) |
Deep_security_agent | Trendmicro | 10.0-update7 (including) | 10.0-update7 (including) |
Deep_security_agent | Trendmicro | 10.0-update8 (including) | 10.0-update8 (including) |
Deep_security_agent | Trendmicro | 10.0-update9 (including) | 10.0-update9 (including) |
Deep_security_agent | Trendmicro | 11.0 (including) | 11.0 (including) |
Deep_security_agent | Trendmicro | 11.0-update1 (including) | 11.0-update1 (including) |
Deep_security_agent | Trendmicro | 11.0-update10 (including) | 11.0-update10 (including) |
Deep_security_agent | Trendmicro | 11.0-update11 (including) | 11.0-update11 (including) |
Deep_security_agent | Trendmicro | 11.0-update12 (including) | 11.0-update12 (including) |
Deep_security_agent | Trendmicro | 11.0-update13 (including) | 11.0-update13 (including) |
Deep_security_agent | Trendmicro | 11.0-update14 (including) | 11.0-update14 (including) |
Deep_security_agent | Trendmicro | 11.0-update15 (including) | 11.0-update15 (including) |
Deep_security_agent | Trendmicro | 11.0-update16 (including) | 11.0-update16 (including) |
Deep_security_agent | Trendmicro | 11.0-update17 (including) | 11.0-update17 (including) |
Deep_security_agent | Trendmicro | 11.0-update18 (including) | 11.0-update18 (including) |
Deep_security_agent | Trendmicro | 11.0-update19 (including) | 11.0-update19 (including) |
Deep_security_agent | Trendmicro | 11.0-update2 (including) | 11.0-update2 (including) |
Deep_security_agent | Trendmicro | 11.0-update20 (including) | 11.0-update20 (including) |
Deep_security_agent | Trendmicro | 11.0-update21 (including) | 11.0-update21 (including) |
Deep_security_agent | Trendmicro | 11.0-update22 (including) | 11.0-update22 (including) |
Deep_security_agent | Trendmicro | 11.0-update23 (including) | 11.0-update23 (including) |
Deep_security_agent | Trendmicro | 11.0-update24 (including) | 11.0-update24 (including) |
Deep_security_agent | Trendmicro | 11.0-update25 (including) | 11.0-update25 (including) |
Deep_security_agent | Trendmicro | 11.0-update26 (including) | 11.0-update26 (including) |
Deep_security_agent | Trendmicro | 11.0-update27 (including) | 11.0-update27 (including) |
Deep_security_agent | Trendmicro | 11.0-update3 (including) | 11.0-update3 (including) |
Deep_security_agent | Trendmicro | 11.0-update4 (including) | 11.0-update4 (including) |
Deep_security_agent | Trendmicro | 11.0-update5 (including) | 11.0-update5 (including) |
Deep_security_agent | Trendmicro | 11.0-update6 (including) | 11.0-update6 (including) |
Deep_security_agent | Trendmicro | 11.0-update7 (including) | 11.0-update7 (including) |
Deep_security_agent | Trendmicro | 11.0-update8 (including) | 11.0-update8 (including) |
Deep_security_agent | Trendmicro | 11.0-update9 (including) | 11.0-update9 (including) |
Deep_security_agent | Trendmicro | 12.0 (including) | 12.0 (including) |
Deep_security_agent | Trendmicro | 12.0-update1 (including) | 12.0-update1 (including) |
Deep_security_agent | Trendmicro | 12.0-update10 (including) | 12.0-update10 (including) |
Deep_security_agent | Trendmicro | 12.0-update11 (including) | 12.0-update11 (including) |
Deep_security_agent | Trendmicro | 12.0-update12 (including) | 12.0-update12 (including) |
Deep_security_agent | Trendmicro | 12.0-update13 (including) | 12.0-update13 (including) |
Deep_security_agent | Trendmicro | 12.0-update14 (including) | 12.0-update14 (including) |
Deep_security_agent | Trendmicro | 12.0-update15 (including) | 12.0-update15 (including) |
Deep_security_agent | Trendmicro | 12.0-update16 (including) | 12.0-update16 (including) |
Deep_security_agent | Trendmicro | 12.0-update17 (including) | 12.0-update17 (including) |
Deep_security_agent | Trendmicro | 12.0-update18 (including) | 12.0-update18 (including) |
Deep_security_agent | Trendmicro | 12.0-update19 (including) | 12.0-update19 (including) |
Deep_security_agent | Trendmicro | 12.0-update2 (including) | 12.0-update2 (including) |
Deep_security_agent | Trendmicro | 12.0-update20 (including) | 12.0-update20 (including) |
Deep_security_agent | Trendmicro | 12.0-update21 (including) | 12.0-update21 (including) |
Deep_security_agent | Trendmicro | 12.0-update3 (including) | 12.0-update3 (including) |
Deep_security_agent | Trendmicro | 12.0-update4 (including) | 12.0-update4 (including) |
Deep_security_agent | Trendmicro | 12.0-update5 (including) | 12.0-update5 (including) |
Deep_security_agent | Trendmicro | 12.0-update6 (including) | 12.0-update6 (including) |
Deep_security_agent | Trendmicro | 12.0-update7 (including) | 12.0-update7 (including) |
Deep_security_agent | Trendmicro | 12.0-update8 (including) | 12.0-update8 (including) |
Deep_security_agent | Trendmicro | 12.0-update9 (including) | 12.0-update9 (including) |