CVE-2020-8467highunder attack

CVE-2020-8467: high-severity vulnerability in Trend Micro OfficeScan, Trend Micro Apex One

Published · Updated

56Vexday Risk Score

Prioritize patching. It under exploitation confirmed by CISA.

ssvc Actcvss 8.8epss 11%
from disclosure to weapon
Published on NVDMar 18
CISA KEV+595d
exploitation probability
11%top 4% of all CVEs
observed exploitation
yesCISA + VulnCheck
Action required by CISAfederal deadline: 2022-05-03

Apply updates per vendor instructions.

In short

A migration tool in Trend Micro Apex One (2019) and OfficeScan XG allows authenticated attackers to run arbitrary code on the system. This is dangerous because an authenticated user could take full control of the protected computer.

Technical detail

The migration tool component fails to properly validate or sanitize user-supplied input, enabling authenticated remote code execution (RCE). An attacker with valid credentials can exploit this to execute arbitrary commands with the privileges of the affected application, potentially leading to complete system compromise.

Summary generated and translated by AI from the official description.

The full analysis of this CVE is available in Portuguese →

A migration tool component of Trend Micro Apex One (2019) and OfficeScan XG contains a vulnerability which could allow remote attackers to execute arbitrary code on affected installations (RCE). An attempted attack requires user authentication.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Related CVEs — Trend Micro OfficeScan, Trend Micro Apex One

In the same product, most dangerous first.