Trend Micro Security Update – 08 November 2023

Trend Micro has released a security update to fix multiple vulnerabilities across Trend Micro Apex One and Apex One as a Service.

The addressed vulnerabilities could allow the attacker to escalate privileges on the affected products.

Sample of the addressed vulnerabilities:

Agent Link Following Local Privilege Escalation Vulnerability (CVE-2023-47192):

  • CVSS: 7.8
  • Attack Vector: Local
  • Attack Complexity: Low
  • Privileges Required: Low
  • User Interaction: None
  • Consequences: Gain Privileges
Vulnerabilities
  • CVE-2023-47192
  • CVE-2023-47193
  • CVE-2023-47194
  • CVE-2023-47195
  • CVE-2023-47196
  • CVE-2023-47197
  • CVE-2023-47198
  • CVE-2023-47199
  • CVE-2023-47200
  • CVE-2023-47201
  • CVE-2023-47202
Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Trend Micro Security Advisory

References