Bitter APT – Active IOCs
November 20, 2024An Emerging Ducktail Infostealer – Active IOCs
November 20, 2024Bitter APT – Active IOCs
November 20, 2024An Emerging Ducktail Infostealer – Active IOCs
November 20, 2024Severity
High
Analysis Summary
CVE-2024-51503
A security agent manual scan command injection vulnerability in the Trend Micro Deep Security 20 Agent could allow an attacker to escalate privileges and execute arbitrary code on an affected machine. In certain circumstances, attackers that have legitimate access to the domain may be able to remotely inject commands to other machines in the same domain.
Impact
- Privilege Escalation
- Code Execution
Indicators of Compromise
CVE
- CVE-2024-51503
Affected Vendors
Affected Products
- Trend Micro Deep Security Agent 20.0
Remediation
Refer to Trend Micro Security Advisory for patch, upgrade, or suggested workaround information.