CVE-2024-55955
CVSS 3.1 Score 6.7 of 10 (medium)
Details
Summary
CVE-2024-55955 is a vulnerability affecting Trend Micro Deep Security 20.0 agents between versions 20.0.1-9400 and 20.0.1-23340. The issue involves incorrect permissions assignment that could allow a local attacker, who has already gained the ability to execute low-privileged code on the target system, to escalate their privileges on the affected installations. This vulnerability poses a potential risk, as successful exploitation could lead to more serious attacks or unauthorized access to sensitive data. It is essential for organizations using the affected versions of Trend Micro Deep Security to apply the necessary patches to mitigate this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Trend Micro Deep Security
Affected Vendors
- Trend Micro