Critical severity9.1NVD Advisory· Published Oct 10, 2022· Updated Jun 17, 2026
CVE-2022-41746
CVE-2022-41746
Description
A forced browsing vulnerability in Trend Micro Apex One could allow an attacker with access to the Apex One console on affected installations to escalate privileges and modify certain agent groupings. Please note: an attacker must first obtain the ability to log onto the Apex One web console in order to exploit this vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:trendmicro:apex_one:-:*:*:*:saas:*:*:*+ 2 more
- cpe:2.3:a:trendmicro:apex_one:-:*:*:*:saas:*:*:*
- cpe:2.3:a:trendmicro:apex_one:2019:*:*:*:*:*:*:*
- (no CPE)
- Range: 2019 (on-prem) and SaaS
Patches
Vulnerability mechanics
References
2- success.trendmicro.com/solution/000291645nvdPatchVendor Advisory
- www.zerodayinitiative.com/advisories/ZDI-22-1403/nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.