CVE Vulnerabilities

CVE-2024-52048

Incorrect Privilege Assignment

Published: Dec 31, 2024 | Modified: Aug 25, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A LogServer link following vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on affected installations. This vulnerability is similar to, but not identical to CVE-2024-52049.

Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

Weakness

A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.

Affected Software

Name Vendor Start Version End Version
Apex_one Trendmicro * 14.0.14203 (excluding)
Apex_one Trendmicro * 2019.13140 (excluding)

Potential Mitigations

References