CVE-2023-47202

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jan 23, 2024
Updated: Jan 29, 2024

Summary

CVE-2023-47202 is a local file inclusion vulnerability affecting the Trend Micro Apex One management server. An attacker who has already gained the ability to run low-privileged code on the targeted system can exploit this flaw to escalate their privileges further. By including a specially crafted file in the input, they can potentially gain access to sensitive information or execute arbitrary code, leading to a more serious compromise of the affected installation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Trend Micro Apex One

Affected Vendors

  • Trend Micro, Inc.