VORANT. Threat Intelligence Sign in Get the full feed

Multiple vulnerabilities in Trend Micro products allow remote code execution and…

critical vulnerability

Multiple vulnerabilities in Trend Micro products allow remote code execution and component tampering; CVE-2020-8467 and CVE-2020-8468 actively exploited.

Japan's IPA has issued an alert regarding multiple vulnerabilities discovered in products provided by Trend Micro. The vulnerabilities enable remote attackers to execute arbitrary code or tamper with system components. Two specific vulnerabilities, CVE-2020-8467 and CVE-2020-8468, are of particular concern as active exploitation has already been confirmed in the wild. IPA warns that damage from these vulnerabilities may expand and urges immediate remediation. The agency recommends that users apply patches provided by Trend Micro as soon as possible. Details are available through the IPA Security Center, though they note they cannot respond to questions about individual systems and environments.

Mentioned in this report

Vulnerabilities CVE-2020-8467KEVCVE-2020-8468KEV

Source reporting: https://www.ipa.go.jp/archive/security/security-alert/2019/alert20200316.html

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free