CVE-2022-25329
24.02.2022, 03:15
Trend Micro ServerProtect 6.0/5.8 Information Server uses a static credential to perform authentication when a specific command is typed in the console. An unauthenticated remote attacker with access to the Information Server could exploit this to register to the server and perform authenticated actions.Enginsight
Vendor | Product | Version |
---|---|---|
trendmicro | serverprotect | 5.8 |
trendmicro | serverprotect | 5.8 |
trendmicro | serverprotect | 5.8 |
trendmicro | serverprotect_for_network_appliance_filer | 5.8 |
trendmicro | serverprotect_for_storage | 6.0 |
𝑥
= Vulnerable software versions