Vulnerabilities > CVE-2021-42012 - Out-of-bounds Write vulnerability in Trendmicro products
Attack vector
LOCAL Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
A stack-based buffer overflow vulnerability in Trend Micro Apex One, Apex One as a Service and Worry-Free Business Security 10.0 SP1 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
Common Weakness Enumeration (CWE)
References
- https://success.trendmicro.com/solution/000289229
- https://success.trendmicro.com/solution/000289229
- https://success.trendmicro.com/solution/000289230
- https://success.trendmicro.com/solution/000289230
- https://www.zerodayinitiative.com/advisories/ZDI-21-1221/
- https://www.zerodayinitiative.com/advisories/ZDI-21-1221/