← Back to browse · API

CVE-2023-41179

Severity
HIGH
CVSS
7.2
EPSS
0.04739
Risk score
55.46
CISA KEV
Yes
PoC
No
Published
2023-09-21
Modified
2023-09-21
First seen
2026-08-07
Aliases
EUVD-2023-45696, GHSA-VQ2C-8M6J-G4VH
Products
Trend Micro, Inc.:Trend Micro Worry-Free Business Security 10.0 SP1 <10.0 SP1 Build 2495, Trend Micro, Inc.:Trend Micro Worry-Free Business Security Services SaaS <6.7.3578 / 14.3.1105, Trend Micro:Apex One and Worry-Free Business Security, Trend Micro:Trend Micro Apex One 2019 (14.0) <14.0.0.12380, Trend Micro:Trend Micro Apex One SaaS <14.0.12637
Sources
euvd EUVD-2023-45696
cisa.gov CVE-2023-41179

Description

Trend Micro Apex One and Worry-Free Business Security contain an unspecified vulnerability in the third-party anti-virus uninstaller that could allow an attacker to manipulate the module to conduct remote code execution. An attacker must first obtain administrative console access on the target system in order to exploit this vulnerability.

References