An insecure access control vulnerability in Trend Micro...
High severity
Unreviewed
Published
Jun 17, 2025
to the GitHub Advisory Database
•
Updated Jun 17, 2025
Description
Published by the National Vulnerability Database
Jun 17, 2025
Published to the GitHub Advisory Database
Jun 17, 2025
Last updated
Jun 17, 2025
An insecure access control vulnerability in Trend Micro Apex One and Trend Micro Worry-Free Business Security could allow a local attacker to overwrite key memory-mapped files which could then have severe consequences for the security and stability of affected installations.
Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
References