CVE-2020-8468
HIGH KEVTrend Micro Apex One <2019 - Content Validation Escape
Title source: llmDescription
Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) agents are affected by a content validation escape vulnerability which could allow an attacker to manipulate certain agent client components. An attempted attack requires user authentication.
References (5)
Scores
CVSS v3
8.8
EPSS
0.1908
EPSS Percentile
95.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CISA KEV
2021-11-03
VulnCheck KEV
2020-03-16
InTheWild.io
2020-03-16
ENISA EUVD
EUVD-2020-29334
CWE
CWE-74
Status
published
Products (5)
trendmicro/apex_one
2019
trendmicro/officescan
xg (2 CPE variants)
trendmicro/worry-free_business_security
9.0 sp3
trendmicro/worry-free_business_security
9.5
trendmicro/worry-free_business_security
10.0 (2 CPE variants)
Published
Mar 18, 2020
KEV Added
Nov 03, 2021
Tracked Since
Feb 18, 2026