A time-of-check time-of-use vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
| Vendor | Product | Versions |
|---|---|---|
| trend micro | trendai apex one | 2019 (14.0), SaaS |
Updated severity to CRITICAL, noted no available exploit, and added new tag 'toctou'.
Initial creation