Vulnerability Details CVE-2024-39753
An modOSCE SQL Injection vulnerability in Trend Micro Apex One could allow a remote attacker to execute arbitrary code on affected installations.
Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.05
EPSS Ranking 89.4%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2024-39753
-
cpe:2.3:a:trendmicro:apex_one:-
-
cpe:2.3:a:trendmicro:apex_one:14.0
-
cpe:2.3:a:trendmicro:apex_one:14.0.0.12980
-
cpe:2.3:a:trendmicro:apex_one:14.0.12737
-
cpe:2.3:a:trendmicro:apex_one:14.0.12849
-
cpe:2.3:a:trendmicro:apex_one:2019