{"cvss":0.0,"datePublished":"2022-09-15","dateUpdated":"2022-09-15","description":"Trend Micro Apex One and Apex One as a Service contain an improper validation of rollback mechanism components that could lead to remote code execution.","dueDate":"2022-10-06","id":"CVE-2022-40139","kev_catalogs":["cisa"],"knownRansomwareCampaignUse":"Unknown","notes":"https://success.trendmicro.com/dcx/s/solution/000291528?language=en_US;  https://nvd.nist.gov/vuln/detail/CVE-2022-40139","product":"Apex One and Apex One as a Service","requiredAction":"Apply updates per vendor instructions.","severity":"HIGH","source":"cisa_known_exploited","title":"Trend Micro Apex One and Apex One as a Service Improper Validation Vulnerability","vendor":"Trend Micro"}