Rewterz
Rewterz Threat Alert – Amadey Malware Spreads Via Software Cracks In SmokeLoader Campaign – Active IOCs
July 27, 2022
Rewterz
Rewterz Threat Alert – Bitter APT Group – Active IOCs
July 28, 2022

Rewterz Threat Advisory – CVE-2022-36336 – Trend Micro Apex One and Worry-Free Business Security Vulnerability

Severity

High

Analysis Summary

CVE-2022-36336

Trend Micro Apex One and Worry-Free Business Security could allow a local authenticated attacker to gain elevated privileges on the system, caused by a link following vulnerability in the scanning function. An attacker could exploit this vulnerability to gain elevated privileges on the system.

Impact

  • Privilege Escalation

Indicators Of Compromise

CVE

  • CVE-2022-36336

Affected Vendors

Trend Micro

Affected Products

  • Trend Micro Worry-Free Business Security 10.0 SP1
  • Trend Micro Apex One On Premise (2019)
  • Trend Micro Apex One SaaS
  • Trend Micro Worry-Free Business Security Services SaaS

Remediation

Refer to Trend Micro Security Advisory for patch, upgrade or suggested workaround information.

Trend Micro Security Advisory