← Back

CVE-2022-45797

nvd nist
Published: Dec 12, 2022Modified: Apr 24, 2025

JSON object

Loading...
7.1
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Exploitability: 1.8 / Impact: 5.2
Source: NVD

Description

An arbitrary file deletion vulnerability in the Damage Cleanup Engine component of Trend Micro Apex One and Trend Micro Apex One as a Service could allow a local attacker to escalate privileges and delete files on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

Affected (2)

Products: Trendmicro: Apex One
1 product
Apex One
Configuration A
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Trendmicro
All versions
Version 2019
Running on/withPlatform Versions
Microsoft
Windows
All versions

References (2)

Source: security@trendmicro.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.