CVE Published: 22/10/2024 |
CVE Updated: 22/10/2024 |
CVE Year: 2024 Source: trendmicro |
Vendor: Trend Micro, Inc. |
Product: Trend Micro Antivirus One Status : PUBLISHED
CVE-2024-45334 Description
Trend Micro Antivirus One versions 3.10.4 and below (Consumer) is vulnerable to an Arbitrary Configuration Update that could allow unauthorized access to product configurations and functions.
Metrics
CVSS Version: 3.1 |
Base Score: 7.8 HIGH Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
l➤ Exploitability Metrics: Attack Vector (AV)* LOCAL Attack Complexity (AC)* HIGH Privileges Required (PR)* LOW User Interaction (UI)* NONE Scope (S)* CHANGED
l➤ Impact Metrics: Confidentiality Impact (C)* HIGH Integrity Impact (I)* HIGH Availability Impact (A)* HIGH
Weakness Enumeration (CWE)
CWE-ID: CWE Name: Source: Trend Micro, Inc.
Common Attack Pattern Enumeration and Classification (CAPEC)