← Back

CVE-2025-30640

nvd nist
Published: Jun 17, 2025Modified: Sep 9, 2025

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: security@trendmicro.com (Secondary)

Description

A link following vulnerability in Trend Micro Deep Security 20.0 agents could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

Affected (13)

1 product
Deep Security Agent
Configuration A
13 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Trendmicro
Before 20.0.1
Version 20.0.1
Version 20.0.1 update12510
Version 20.0.1 update14610
Version 20.0.1 update17380
Version 20.0.1 update19250
Version 20.0.1 update21510
Version 20.0.1 update23340
Version 20.0.1 update3180
Version 20.0.1 update4540
Version 20.0.1 update690
Version 20.0.1 update7380
Version 20.0.1 update9400
Running on/withPlatform Versions
Microsoft
Windows
All versions

References (2)

Source: security@trendmicro.com
Vendor Advisory
Source: security@trendmicro.com
Third Party Advisory

Timeline

No history available yet.