Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) server contains a vulnerable service DLL file that could allow a remote attacker to execute arbitrary code on affected installations with SYSTEM level privileges. Authentication is not required to exploit this vulnerability.
                
            References
                    | Link | Resource | 
|---|---|
| https://success.trendmicro.com/jp/solution/000244253 | Patch Vendor Advisory | 
| https://success.trendmicro.com/solution/000245571 | Patch Vendor Advisory | 
| https://success.trendmicro.com/solution/000245572 | Patch Vendor Advisory | 
| https://success.trendmicro.com/jp/solution/000244836 | Patch Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
                                
                                
  | 
                        
Information
                Published : 2020-03-17 18:15
Updated : 2021-07-21 04:39
NVD link : CVE-2020-8598
Mitre link : CVE-2020-8598
JSON object : View
CWE
                
                    
                        
                        CWE-306
                        
            Missing Authentication for Critical Function
Products Affected
                trendmicro
- officescan
 - apex_one
 - worry-free_business_security
 


