Rewterz
Rewterz Threat Advisory – CVE-2022-22953 – VMware HCX Vulnerability
June 20, 2022
Rewterz
Rewterz Threat Alert – Emotet – Active IOCs
June 20, 2022

Rewterz Threat Advisory – CVE-2022-33158 – Trend Micro VPN Proxy One Pro Vulnerability

Severity

High

Analysis Summary

CVE-2022-33158

Trend Micro VPN Proxy One Pro could allow a local authenticated attacker to gain elevated privileges on the system, caused by incorrect permissions in a key directory. By sending a specially crafted request, an attacker could exploit this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM.

Impact

  • Privilege Escalation

Indicators Of Compromise

CVE

  • CVE-2022-33158

Affected Vendors

Trend Micro

Affected Products

Trend Micro VPN Proxy One Pro 5.3.1056

Remediation

Refer to Trend Micro Security Bulletin for patch, upgrade or suggested workaround information.

Trend Micro Security Bulletin