High
Trend Micro Apex One could allow a local authenticated attacker to gain elevated privileges on the system, caused by a flaw in the NT Apex One RealTime Scan Service. By creating a mount point to delete arbitrary folder, an authenticated attacker could exploit this vulnerability to gain elevated privileges and execute arbitrary code in the context of SYSTEM.
Trend Micro Apex One could allow a local authenticated attacker to gain elevated privileges on the system, caused by a flaw in the NT Apex One RealTime Scan Service. By creating a DOS device redirection, an authenticated attacker could exploit this vulnerability to gain elevated privileges and execute arbitrary code in the context of SYSTEM.
Trend Micro Apex One is vulnerable to a denial of service, caused by a flaw in the logging of requests received on the management port. By sending a specially-crafted request, a remote attacker could exploit this vulnerability to flood a temporary log location and consume all disk space, and results in a denial of service condition.
Trend Micro Antivirus for Mac could allow a local authenticated attacker to gain elevated privileges on the system, caused by a link following flaw in the program_after_update script. By creating a specially-crafted symbolic link, an authenticated attacker could exploit this vulnerability to gain elevated privileges and execute code in the context of root.
Refer to Trend Micro Security Bulletin: for patch, upgrade or suggested workaround information.
Trend Micro Apex One
Trend Micro Antivirus for Mac