"value":"An engine link following vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on affected installations.\r\n\r\nPlease note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability."
}
]
},
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"CWE-269: Improper Privilege Management",
"cweId":"CWE-269"
}
]
}
]
},
"affects":{
"vendor":{
"vendor_data":[
{
"vendor_name":"Trend Micro, Inc.",
"product":{
"product_data":[
{
"product_name":"Trend Micro Apex One",
"version":{
"version_data":[
{
"version_affected":"<",
"version_name":"2019 (14.0)",
"version_value":"14.0.0.13140"
}
]
}
},
{
"product_name":"Trend Micro Apex One as a Service",