Rewterz
Rewterz Threat Advisory – CVE-2021-3033 – Palo Alto Networks Prisma Cloud Compute console security bypass
February 12, 2021
Rewterz
Rewterz Threat Advisory – ICS: Advantech iView Multiple Vulnerabilities
February 12, 2021

Rewterz Threat Advisory – Trend Micro Security 2020 and 2021 families code execution

Severity

High

Analysis Summary

CVE-2021-25251

Trend Micro Security 2020 and 2021 families could allow a local authenticated attacker to execute arbitrary code on the system, caused by a code injection vulnerability. An attacker could exploit this vulnerability to inject and execute arbitrary code on the system.

Impact

Execution of arbitrary code

Affected Vendors

Trend Micro

Affected Products

  • Trend Micro Premium Security 2020 (v16)
  • Trend Micro Maximum Security 2020 (v16)
  • Trend Micro Internet Security 2020 (v16)
  • Trend Micro Antivirus+ Security 2020 (v16)
  • Trend Micro Premium Security 2021 (v17)
  • Trend Micro Maximum Security 2021 (v17)
  • Trend Micro Internet Security 2021 (v17)
  • Trend Micro Antivirus+ 2021 (v17)

Remediation

Refer to Trend Micro Security Bulletin: TMKA-10211 for patch, upgrade or suggested workaround information.

Trend Micro Security Bulletin: TMKA-10211