← Back

CVE-2024-36358

nvd nist
Published: Jun 10, 2024Modified: Jun 17, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A link following vulnerability in Trend Micro Deep Security 20.x agents below build 20.0.1-3180 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

Affected (50)

1 product
Deep Security Agent
Configuration A
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Trendmicro
Version 20.0 update2971
Version 20.0 update8453
Running on/withPlatform Versions
Linux
Linux Kernel
All versions
Configuration B
8 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Trendmicro
Version 20.0.1 update700
Version 20.0 update2419
Version 20.0 update3530
Version 20.0 update3771
Version 20.0 update5810
Version 20.0 update5995
Version 20.0 update6690
Version 20.0 update6860
Running on/withPlatform Versions
Microsoft
Windows
All versions
Configuration C
40 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Trendmicro
Version 20.0.1 update690
Version 20.0 update1194
Version 20.0 update1304
Version 20.0 update1337
Version 20.0 update1559
Version 20.0 update1681
Version 20.0 update1822
Version 20.0 update1876
Version 20.0 update2009
Version 20.0 update2204
Version 20.0 update2395
Version 20.0 update2593
Version 20.0 update2740
Version 20.0 update2921
Version 20.0 update3165
Version 20.0 update3288
Version 20.0 update3445
Version 20.0 update3770
Version 20.0 update3964
Version 20.0 update4185
Version 20.0 update4416
Version 20.0 update4726
Version 20.0 update4959
Version 20.0 update5137
Version 20.0 update5394
Version 20.0 update5512
Version 20.0 update5761
Version 20.0 update5953
Version 20.0 update6313
Version 20.0 update6658
Version 20.0 update6912
Version 20.0 update7119
Version 20.0 update7303
Version 20.0 update7476
Version 20.0 update7719
Version 20.0 update7943
Version 20.0 update8137
Version 20.0 update8268
Version 20.0 update8438
Version 20.0 update877
Running on/withPlatform Versions
Opengroup
Unix
All versions

References (4)

Source: security@trendmicro.com
Broken Link
Source: security@trendmicro.com
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.