A Time-of-Check Time-Of-Use vulnerability in the Trend Micro Apex One and Apex One as a Service agent could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
History

Mon, 16 Jun 2025 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Trendmicro
Trendmicro apex One
CPEs cpe:2.3:a:trendmicro:apex_one:*:*:*:*:*:saas:*:*
cpe:2.3:a:trendmicro:apex_one:*:*:*:*:-:*:*:*
Vendors & Products Trendmicro
Trendmicro apex One

cve-icon MITRE

Status: PUBLISHED

Assigner: trendmicro

Published: 2024-06-10T21:21:04.492Z

Updated: 2024-08-02T03:37:04.674Z

Reserved: 2024-05-23T19:30:36.177Z

Link: CVE-2024-36304

cve-icon Vulnrichment

Updated: 2024-08-02T03:37:04.674Z

cve-icon NVD

Status : Analyzed

Published: 2024-06-10T22:15:10.480

Modified: 2025-06-16T20:39:51.303

Link: CVE-2024-36304

cve-icon Redhat

No data.