ZeroHour

CVE-2021-32459

CVSS 3.1
6.5 medium
EPSS
<1%p59
Published
()
Modified
Description

Trend Micro Home Network Security version 6.6.604 and earlier contains a hard-coded password vulnerability in the log collection server which could allow an attacker to use a specially crafted network request to lead to arbitrary authentication. An attacker must first obtain the ability to execute high-privileged code on the target device in order to exploit this vulnerability.

Vendors
trendmicro
Products
home network security
Weakness
CWE-798
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N

In the news