Description
Trend Micro VPN Proxy Pro version 5.2.1026 and below contains a vulnerability involving some overly permissive folders in a key directory which could allow a local attacker to obtain privilege escalation on an affected system.
References
https://helpcenter.trendmicro.com/en-us/article/tmka-11042
Vendor Advisory
https://www.zerodayinitiative.com/advisories/ZDI-22-853/
Third Party AdvisoryVDB Entry
CVSS impact metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
7.8 · High
CVSS V3.1
CVSS V3.0
CVSS V2.0
Information
Source identifier
Vulnerability status
Analyzed
Published
2022-07-30T00:15:08.630
2 years agoLast modified
2022-08-10T12:39:43.773
2 years ago