Vulnerability Database

309,364

Total vulnerabilities in the database

CVE-2024-55955

An incorrect permissions assignment vulnerability in Trend Micro Deep Security 20.0 agents between versions 20.0.1-9400 and 20.0.1-23340 could allow a local attacker to escalate privileges on affected installations.

Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

  • Published: Dec 31, 2024
  • Updated: Nov 16, 2025
  • CVE: CVE-2024-55955
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 6.7
  • AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Software From Fixed in
trendmicro / deep_security_agent 20.0.1-update12510 20.0.1-update12510.x
trendmicro / deep_security_agent 20.0.1-update14610 20.0.1-update14610.x
trendmicro / deep_security_agent 20.0.1-update17380 20.0.1-update17380.x
trendmicro / deep_security_agent 20.0.1-update19250 20.0.1-update19250.x
trendmicro / deep_security_agent 20.0.1-update21510 20.0.1-update21510.x
trendmicro / deep_security_agent 20.0.1-update9400 20.0.1-update9400.x