cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-23120,https://securityvulnerability.io/vulnerability/CVE-2022-23120,Code Injection Vulnerability in Trend Micro Deep Security and Cloud One Product,"A code injection vulnerability exists in Trend Micro's Deep Security and Cloud One - Workload Security Agent for Linux, specifically in versions 20 and below. This vulnerability allows an attacker, who has gained access to the target agent while it remains un-activated and unconfigured, to escalate privileges and execute arbitrary code with root privileges. This can lead to significant security risks if not addressed promptly. It is crucial for users to ensure their systems are properly configured and secured.",Trend Micro,Trend Micro Deep Security Agent For Linux,7.8,HIGH,0.0004799999878741801,false,,false,false,false,,,false,false,,2022-01-20T18:11:18.000Z,0 CVE-2022-23119,https://securityvulnerability.io/vulnerability/CVE-2022-23119,Directory Traversal Vulnerability in Trend Micro Deep Security for Linux,"A directory traversal vulnerability exists in Trend Micro Deep Security and Cloud One - Workload Security Agent for Linux versions 20 and below. This vulnerability permits unauthorized access to arbitrary files on the server's file system, granted that an attacker has already gained compromised access to the target Deep Security Manager (DSM) or the target agent has not yet been activated or configured. If exploited, this could lead to critical information disclosure and potential system compromise.",Trend Micro,Trend Micro Deep Security Agent For Linux,7.5,HIGH,0.0022799998987466097,false,,false,false,false,,,false,false,,2022-01-20T18:11:17.000Z,0