A directory traversal vulnerability in Trend Micro Deep Security and Cloud One - Workload Security Agent for Linux version 20 and below could allow an attacker to read arbitrary files from the file system. Please note: an attacker must first obtain compromised access to the target Deep Security Manager (DSM) or the target agent must be not yet activated or configured in order to exploit this vulnerability.
References
Link Resource
https://success.trendmicro.com/solution/000290104 Mitigation Patch Vendor Advisory
https://www.modzero.com/advisories/MZ-21-02-Trendmicro.txt Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: trendmicro

Published: 2022-01-20T18:11:17

Updated: 2022-01-20T18:11:17

Reserved: 2022-01-11T00:00:00


Link: CVE-2022-23119

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-01-20T19:15:07.907

Modified: 2022-01-27T16:09:44.363


Link: CVE-2022-23119

JSON object: View

cve-icon Redhat Information

No data.

CWE