| ID |
CVE-2024-55955
|
| Sažetak |
An incorrect permissions assignment vulnerability in Trend Micro Deep Security 20.0 agents between versions 20.0.1-9400 and 20.0.1-23340 could allow a local attacker to escalate privileges on affected installations.
Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. |
| Reference |
|
| CVSS |
| Base: | 6.7 |
| Impact: | 5.9 |
| Exploitability: | 0.8 |
|
| Pristup |
| Vektor | Složenost | Autentikacija |
| LOCAL |
HIGH |
LOW |
|
| Impact |
| Povjerljivost | Cjelovitost | Dostupnost |
| HIGH |
HIGH |
HIGH |
|
| CVSS vektor |
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H |
| Zadnje važnije ažuriranje |
09-09-2025 - 14:45 |
| Objavljeno |
31-12-2024 - 17:15 |