Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Apr 21, 2022

CVE-2022-26871

High
EPSS 13.6%CISA KEV
Trend Micro/Apex Central

Description

An arbitrary file upload vulnerability in Trend Micro Apex Central could allow for remote code execution.

EPSS — Exploit Probability

13.6%

Higher than 94.1% of all CVEs

Required Action

https://nvd.nist.gov/vuln/detail/CVE-2022-26871

Risk Assessment

ELEVATED
In CISA KEV

Details

Severity
High
EPSS
13.6%
CISA KEV
Yes
Ransomware
Unknown
Articles
0

Timeline

Published

Mar 31, 2022

Added to KEV

Mar 31, 2022

Remediation Due

Apr 21, 2022

Affected Product

Trend Micro

Apex Central

View all Trend Micro CVEs