60
CVE-2021-32459
—CVSS 3.1
6.5 medium
EPSS
<1%p59
Published
()
Modified
Description
Trend Micro Home Network Security version 6.6.604 and earlier contains a hard-coded password vulnerability in the log collection server which could allow an attacker to use a specially crafted network request to lead to arbitrary authentication. An attacker must first obtain the ability to execute high-privileged code on the target device in order to exploit this vulnerability.
- Vendors
- trendmicro
- Products
- home network security
- Weakness
- CWE-798
- Vector
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N