CVE-2020-28575 Vulnerability Details

  /     /     /  

CVE-2020-28575 Metadata Quick Info

CVE Published: 01/12/2020 | CVE Updated: 04/08/2024 | CVE Year: 2020
Source: trendmicro | Vendor: Trend Micro | Product: Trend Micro ServerProtect for Linux
Status : PUBLISHED

CVE-2020-28575 Description

A heap-based buffer overflow privilege escalation vulnerability in Trend Micro ServerProtect for Linux 3.0 may allow an attacker to escalate privileges on affected installations. An attacker must first obtain the ability to execute high-privileged code on the target in order to exploit this vulnerability.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: Heap-based Buffer Overflow Privilege Escalation
Source: Trend Micro

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).