diff --git a/2021/32xxx/CVE-2021-32463.json b/2021/32xxx/CVE-2021-32463.json index 6a331dc16a2..ae5ede09af1 100644 --- a/2021/32xxx/CVE-2021-32463.json +++ b/2021/32xxx/CVE-2021-32463.json @@ -1,18 +1,76 @@ { - "data_type": "CVE", - "data_format": "MITRE", - "data_version": "4.0", - "CVE_data_meta": { - "ID": "CVE-2021-32463", - "ASSIGNER": "cve@mitre.org", - "STATE": "RESERVED" - }, - "description": { - "description_data": [ - { - "lang": "eng", - "value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided." - } - ] - } -} \ No newline at end of file + "CVE_data_meta" : { + "ASSIGNER" : "security@trendmicro.com", + "ID" : "CVE-2021-32463", + "STATE" : "PUBLIC" + }, + "affects" : { + "vendor" : { + "vendor_data" : [ + { + "product" : { + "product_data" : [ + { + "product_name" : "Trend Micro Apex One", + "version" : { + "version_data" : [ + { + "version_value" : "2019, SaaS" + } + ] + } + }, + { + "product_name" : "Trend Micro Worry-Free Business Security", + "version" : { + "version_data" : [ + { + "version_value" : "10.0 SP1, Services (SaaS)" + } + ] + } + } + ] + }, + "vendor_name" : "Trend Micro" + } + ] + } + }, + "data_format" : "MITRE", + "data_type" : "CVE", + "data_version" : "4.0", + "description" : { + "description_data" : [ + { + "lang" : "eng", + "value" : "An incorrect permission assignment denial-of-service vulnerability in Trend Micro Apex One, Apex One as a Service (SaaS), Worry-Free Business Security 10.0 SP1 and Worry-Free Servgices could allow a local attacker to escalate privileges and delete files with system privileges on affected installations.\r\n\r\nPlease note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability." + } + ] + }, + "problemtype" : { + "problemtype_data" : [ + { + "description" : [ + { + "lang" : "eng", + "value" : "Incorrect Permission Assignment Denial-of-Service" + } + ] + } + ] + }, + "references" : { + "reference_data" : [ + { + "url" : "https://success.trendmicro.com/solution/000286855" + }, + { + "url" : "https://success.trendmicro.com/solution/000286856" + }, + { + "url" : "https://www.zerodayinitiative.com/advisories/ZDI-21-786/" + } + ] + } +}