VORANT. Threat Intelligence Sign in Get the full feed

Trend Micro Apex One products contain multiple vulnerabilities including CVE-2022-40139…

critical vulnerability

Trend Micro Apex One products contain multiple vulnerabilities including CVE-2022-40139, which is actively exploited in the wild; immediate patching required.

Japan's Information-technology Promotion Agency (IPA) has issued a security advisory for Trend Micro Apex One and Trend Micro Apex One SaaS security products. Multiple vulnerabilities affect these products with varying severity levels ranging from medium to high (CVSS v3 scores between 5.5 and 8.2). The advisory emphasizes that CVE-2022-40139 is being actively exploited in the wild according to the vendor, making immediate patch application critical for affected organizations.

The vulnerabilities present different attack vectors and impacts depending on the specific CVE. Organizations running affected versions of Trend Micro Apex One (on-premises or SaaS) should prioritize remediation based on the active exploitation of CVE-2022-40139. Trend Micro has released patches to address these vulnerabilities, and workarounds are available to mitigate impact until full patching can be completed.

The advisory directs users to consult JVN iPedia and Trend Micro's official security bulletins for detailed technical information, affected product versions, and specific patch deployment guidance. Given the active exploitation and the critical nature of security products being compromised, this represents a significant risk to organizations relying on Trend Micro endpoint protection.

Mentioned in this report

Vulnerabilities CVE-2022-40139KEV

Source reporting: https://www.ipa.go.jp/archive/security/security-alert/2022/20220913-jvn.html

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free