668
VMScore

CVE-2022-25329

Published: 24/02/2022 Updated: 03/03/2022
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Trend Micro ServerProtect 6.0/5.8 Information Server uses a static credential to perform authentication when a specific command is typed in the console. An unauthenticated remote attacker with access to the Information Server could exploit this to register to the server and perform authenticated actions.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

trendmicro serverprotect 5.8

trendmicro serverprotect for network appliance filer 5.8

trendmicro serverprotect_for_storage 6.0