← Back

CVE-2022-40710

nvd nist
Published: Sep 28, 2022Modified: Jun 17, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A link following vulnerability in Trend Micro Deep Security 20 and Cloud One - Workload Security Agent for Windows could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

Affected (36)

1 product
Deep Security Agent
Configuration A
36 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Trendmicro
Version 20.0
Version 20.0 update1337
Version 20.0 update1559
Version 20.0 update158
Version 20.0 update167
Version 20.0 update1681
Version 20.0 update173
Version 20.0 update180
Version 20.0 update1822
Version 20.0 update182
Version 20.0 update183
Version 20.0 update1876
Version 20.0 update190
Version 20.0 update198
Version 20.0 update2009
Version 20.0 update208
Version 20.0 update213
Version 20.0 update2204
Version 20.0 update223
Version 20.0 update224
Version 20.0 update2419
Version 20.0 update2593
Version 20.0 update2740
Version 20.0 update2921
Version 20.0 update3165
Version 20.0 update3288
Version 20.0 update3445
Version 20.0 update3530
Version 20.0 update3771
Version 20.0 update3964
Version 20.0 update4185
Version 20.0 update4416
Version 20.0 update4726
Version 20.0 update4959
Version 20.0 update5137
Version 20.0 update877
Running on/withPlatform Versions
Microsoft
Windows
All versions

References (4)

Source: security@trendmicro.com
Vendor Advisory
Source: security@trendmicro.com
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry

Timeline

No history available yet.