cbcvebase.
CVE-2023-32522
published 2023-06-26

CVE-2023-32522: A path traversal exists in a specific dll of Trend Micro Mobile Security (Enterprise) 9.8 SP5 which could allow an authenticated remote attacker to delete…

PriorityP353high8.1CVSS 3.1
AVNACLPRLUINSUCNIHAH
EPSS
3.32%
87.1th percentile
A path traversal exists in a specific dll of Trend Micro Mobile Security (Enterprise) 9.8 SP5 which could allow an authenticated remote attacker to delete arbitrary files. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

Affected

2 ranges
VendorProductVersion rangeFixed in
trend_micro_inctrend_micro_moibile_security_for_enterprise>= 9.8 SP5 < 9.8.32949.8.3294
trendmicromobile_security
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.