CVE-2024-55632

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Dec 31, 2024
CWE ID 269

Summary

CVE-2024-55632 is a newly identified privilege escalation vulnerability affecting Trend Micro Apex One security agents. An attacker who manages to execute low-privileged code on the targeted system can exploit this vulnerability to escalate their privileges on affected installations. The specific nature of the attack involves manipulating link following functionality within the security agent software. Although the exploitation of this vulnerability requires initial low-privilege access, successful attacks could result in significant security implications for the affected systems. It is recommended that users of Trend Micro Apex One apply the latest patches to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share