Improper Authentication in Trend Micro products - CVE-2021-36745

 

Improper Authentication in Trend Micro products - CVE-2021-36745

Published: September 24, 2021


Vulnerability identifier: #VU56849
CSH Severity: Critical
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-36745
CWE-ID: CWE-287
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to bypass authentication process.

The vulnerability exists due to an error in the authentication process. A remote non-authenticated attacker can bypass the authentication process and gain unauthorized access to the system.

Successful exploitation of the vulnerability may allow an attacker to gain complete control over the affected system.


Affected software

ServerProtect
ServerProtect for EMC Celerra (SPEMC)
ServerProtect for Network Appliance Filers (SPNAF)
ServerProtect for Microsoft Windows / Novell Netware (SPNT)
ServerProtect for Storage (SPFS)

How to mitigate CVE-2021-36745

Install updates from vendor's website.

ServerProtect - addressed in versions 5.8 CP1575, 6.0 CP1284
ServerProtect for EMC Celerra (SPEMC) - update to 5.8 CP1577
ServerProtect for Network Appliance Filers (SPNAF) - update to 5.8 CP1299
ServerProtect for Microsoft Windows / Novell Netware (SPNT) - update to 5.8 CP1575
ServerProtect for Storage (SPFS) - update to 6.0 CP1284

External References

Related Security Bulletins