mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
70 lines
1.4 KiB
JSON
70 lines
1.4 KiB
JSON
{
|
||
"CVE_data_meta" : {
|
||
"ASSIGNER" : "security@trendmicro.com",
|
||
"ID" : "CVE-2022-40144",
|
||
"STATE" : "PUBLIC"
|
||
},
|
||
"affects" : {
|
||
"vendor" : {
|
||
"vendor_data" : [
|
||
{
|
||
"product" : {
|
||
"product_data" : [
|
||
{
|
||
"product_name" : "Trend Micro Apex One",
|
||
"version" : {
|
||
"version_data" : [
|
||
{
|
||
"version_value" : "2019 (on-prem) and SaaS"
|
||
}
|
||
]
|
||
}
|
||
}
|
||
]
|
||
},
|
||
"vendor_name" : "Trend Micro"
|
||
}
|
||
]
|
||
}
|
||
},
|
||
"data_format" : "MITRE",
|
||
"data_type" : "CVE",
|
||
"data_version" : "4.0",
|
||
"description" : {
|
||
"description_data" : [
|
||
{
|
||
"lang" : "eng",
|
||
"value" : "A vulnerability in Trend Micro Apex One and Trend Micro Apex One as a Service could allow an attacker to bypass the product’s login authentication by falsifying request parameters on affected installations."
|
||
}
|
||
]
|
||
},
|
||
"problemtype" : {
|
||
"problemtype_data" : [
|
||
{
|
||
"description" : [
|
||
{
|
||
"lang" : "eng",
|
||
"value" : "Login Authentication Bypass"
|
||
}
|
||
]
|
||
}
|
||
]
|
||
},
|
||
"references" : {
|
||
"reference_data" : [
|
||
{
|
||
"url" : "https://success.trendmicro.com/solution/000291528"
|
||
},
|
||
{
|
||
"url" : "https://jvn.jp/en/jp/JVN36454862/index.html"
|
||
},
|
||
{
|
||
"url" : "https://appweb.trendmicro.com/SupportNews/NewsDetail.aspx?id=4553"
|
||
},
|
||
{
|
||
"url" : "https://www.ipa.go.jp/security/ciadr/vul/20220913-jvn.html"
|
||
}
|
||
]
|
||
}
|
||
}
|