Cross-Site Scripting Vulnerability in Trend Micro Apex Central Dashboard
CVE-2023-32535
6.1MEDIUM
Summary
Certain dashboard widgets on Trend Micro Apex Central are susceptible to cross-site scripting (XSS) attacks. This vulnerability could potentially allow attackers to execute remote code on the affected servers, posing significant security risks. Successful exploitation of this weakness may enable unauthorized access and manipulation of sensitive information, making it crucial for users to promptly address the issue.
Affected Version(s)
Trend Micro Apex Central 2019 (8.0) < 8.0.0.6394
References
CVSS V3.1
Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved