← Back to CVE List
Vulnerability Intelligence Report

CVE-2023-32530

Vulnerable modules of Trend Micro Apex Central (on-premise) contain vulnerabilities which would allow authenticated users to perform a SQL injection that could lead to remote code execution. Please note: an attacker must first obtain authentication on the target system in order to exploit these vulnerabilities. This is similar to, but not identical to CVE-2023-32529.

No Active Exploit Signals
CVSS Base Score
8.8
HIGH
EPSS Probability:2.43%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
Trend Micro, Inc. Trend Micro Apex Central 2019 (8.0) < 8.0.0.6394 (affected)

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
2.425%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityTrend Micro, Inc. · Vendor · Japan
Reserved2023-05-09T17:30:26
Published2023-06-26T21:54:34
Last Updated2024-12-04T16:36:39

LINK COPIED TO CLIPBOARD