CVE-2020-25773

Severity CVSS v4.0:
Pending analysis
Type:
CWE-415 Double Free
Publication date:
29/09/2020
Last modified:
02/10/2020

Description

A vulnerability in the Trend Micro Apex One ServerMigrationTool component could allow an attacker to execute arbitrary code on affected products. User interaction is required to exploit this vulnerability in that the target must import a corrupted configuration file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:trendmicro:apex_one:2019:*:*:*:*:*:*:*
cpe:2.3:a:trendmicro:apex_one:saas:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*