CVE-2021-42011 – Trend Micro Apex One Incorrect Permission Assignment Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-42011
19 Oct 2021 — Nota: un atacante debe obtener primero la capacidad de ejecutar código con pocos privilegios en el sistema de destino para poder explotar esta vulnerabilidad This vulnerability allows local attackers to escalate privileges on affected installations of Trend Micro Apex One. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. • https://success.trendmicro.com/solution/000289229 • CWE-276: Incorrect Default Permissions •
CVE-2021-42105 – Trend Micro Apex One Unnecessary Privileges Local Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-42105
19 Oct 2021 — Unnecessary privilege vulnerabilities in Trend Micro Apex One, Apex One as a Service, Worry-Free Business Security 10.0 SP1 and Worry-Free Business Security Services could allow a local attacker to escalate privileges on affected installations. ... Esta vulnerabilidad es similar pero no idéntica a las CVE-2021-42104, 42106 y 42107 This vulnerability allows local attackers to escalate privileges on affected installations of Trend Micro Apex One. ... An attacker can leverage this vulnerability t... • https://success.trendmicro.com/solution/000289229 • CWE-269: Improper Privilege Management •
CVE-2021-42107 – Trend Micro Apex One Unnecessary Privileges Local Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-42107
19 Oct 2021 — Unnecessary privilege vulnerabilities in Trend Micro Apex One, Apex One as a Service, Worry-Free Business Security 10.0 SP1 and Worry-Free Business Security Services could allow a local attacker to escalate privileges on affected installations. ... Esta vulnerabilidad es similar pero no idéntica a las CVE-2021-42104, 42105 y 42106 This vulnerability allows local attackers to escalate privileges on affected installations of Trend Micro Apex One. ... An attacker can leverage this vulnerability t... • https://success.trendmicro.com/solution/000289229 • CWE-269: Improper Privilege Management •
CVE-2021-42106 – Trend Micro Apex One Unnecessary Privileges Local Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-42106
19 Oct 2021 — Unnecessary privilege vulnerabilities in Trend Micro Apex One, Apex One as a Service, Worry-Free Business Security 10.0 SP1 and Worry-Free Business Security Services could allow a local attacker to escalate privileges on affected installations. ... Esta vulnerabilidad es similar pero no idéntica a las CVE-2021-42104, 42105 y 42107 This vulnerability allows local attackers to escalate privileges on affected installations of Trend Micro Apex One. ... An attacker can leverage this vulnerability t... • https://success.trendmicro.com/solution/000289229 • CWE-269: Improper Privilege Management •
CVE-2021-42101 – Trend Micro Apex One Uncontrolled Search Path Element Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-42101
19 Oct 2021 — An uncontrolled search path element vulnerabilities in Trend Micro Apex One and Apex One as a Service could allow a local attacker to escalate privileges on affected installations. ... Esta vulnerabilidad es similar pero no idéntica a CVE-2021-42103 This vulnerability allows local attackers to escalate privileges on affected installations of Trend Micro Apex One. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. • https://success.trendmicro.com/solution/000289229 • CWE-427: Uncontrolled Search Path Element •
CVE-2021-42102 – Trend Micro Apex One Uncontrolled Search Path Element Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-42102
19 Oct 2021 — An uncontrolled search path element vulnerabilities in Trend Micro Apex One and Apex One as a Service agents could allow a local attacker to escalate privileges on affected installations. ... Un atacante debe obtener primero la capacidad de ejecutar código con pocos privilegios en el sistema de destino para poder explotar esta vulnerabilidad This vulnerability allows local attackers to escalate privileges on affected installations of Trend Micro Apex One Security Agent. ... An attacker can lev... • https://success.trendmicro.com/solution/000289229 • CWE-427: Uncontrolled Search Path Element •
CVE-2021-41347 – Windows AppX Deployment Service Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2021-41347
13 Oct 2021 — Windows AppX Deployment Service Elevation of Privilege Vulnerability Una vulnerabilidad de Elevación de Privilegios en Windows AppX Deployment Service This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-41347 • CWE-269: Improper Privilege Management •
CVE-2021-41345 – Storage Spaces Controller Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2021-41345
13 Oct 2021 — Este ID de CVE es diferente de CVE-2021-26441, CVE-2021-40478, CVE-2021-40488, CVE-2021-40489 This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-41345 • CWE-190: Integer Overflow or Wraparound CWE-269: Improper Privilege Management •
CVE-2021-40489 – Storage Spaces Controller Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2021-40489
13 Oct 2021 — Este ID de CVE es diferente de CVE-2021-26441, CVE-2021-40478, CVE-2021-40488, CVE-2021-41345 This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-40489 • CWE-269: Improper Privilege Management •
CVE-2021-40488 – Storage Spaces Controller Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2021-40488
13 Oct 2021 — Este ID de CVE es diferente de CVE-2021-26441, CVE-2021-40478, CVE-2021-40489, CVE-2021-41345 This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-40488 • CWE-269: Improper Privilege Management •