Root User Authentication Bypass Vulnerability in Trend Micro Apex One, OfficeScan, and Worry-Free Business Security

Root User Authentication Bypass Vulnerability in Trend Micro Apex One, OfficeScan, and Worry-Free Business Security

CVE-2019-18189 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

A directory traversal vulnerability in Trend Micro Apex One, OfficeScan (11.0, XG) and Worry-Free Business Security (9.5, 10.0) may allow an attacker to bypass authentication and log on to an affected product's management console as a root user. The vulnerability does not require authentication.

Learn more about our Cis Benchmark Audit For Microsoft Office.