EXPOSURES › CVE-2020-8599
CVE-2020-8599
HIGH ⌖ ON CISA KEV · EXPLOITEDTrend Micro Apex One and OfficeScan servers suffered an authentication bypass allowing remote attackers to write data and bypass root login.
The vulnerability in Trend Micro Apex One and OfficeScan allowed remote attackers to bypass authentication and write data to arbitrary paths, potentially leading to full system compromise. DIB organizations must ensure these endpoints are patched immediately, as the flaw was actively exploited in the wild and represents a significant supply-chain and endpoint security failure. Failure to patch exposes critical endpoint management systems to unauthorized access and data exfiltration.
Shame score — A critical authentication bypass in a widely deployed endpoint security product was actively exploited in the wild, demonstrating severe negligence in patch management and vulnerability disclosure.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Trend Micro Apex One and OfficeScan server contain a vulnerable EXE file that could allow a remote attacker to write data to a path on affected installations and bypass root login.
"Trend Micro Apex One and OfficeScan server contain a vulnerable EXE file that could allow a remote attacker to write data to a path on affected installations and bypass root login."
| PRODUCT | STATUS |
|---|---|
| Trend Micro Cloud One for Government Trend Micro Inc. |
In Process |
| Trend Micro Vision One for Government Trend Micro Inc. |
In Process |