CVE-2022-25329
Trend Micro ServerProtect 6.0/5.8 Information Server uses a static credential to perform authentication when a specific
Trend Micro ServerProtect 6.0/5.8 Information Server uses a static credential to perform authentication when a specific command is typed in the console. An unauthenticated remote attacker with access to the Information Server could exploit this to register to the server and perform authenticated actions.
CRITICAL · CVSS 9.8
EPSS 0.02629
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules7
YARA rules0