CVE-2023-28005
Last modified
CVE-2023-28005 is a medium-severity vulnerability rated 6.8/10 on the CVSS scale. A vulnerability in Trend Micro Endpoint Encryption Full Disk Encryption version 6.0.0.3204 and below could allow an attacker with physical access to an affected device to bypass Microsoft Windows� Secure Boot process in an attempt to execute other attacks to obtain access to the contents of the device. An attacker must first obtain physical access to the target system in order to exploit this vulnerability. It is also important to note that the contents of the drive(s) encrypted with TMEE FDE would still be protected and would NOT be accessible by the attacker by exploitation of this vulnerability alone.. EPSS estimates a 0.20% chance of exploitation in the next 30 days.
Description
A vulnerability in Trend Micro Endpoint Encryption Full Disk Encryption version 6.0.0.3204 and below could allow an attacker with physical access to an affected device to bypass Microsoft Windows� Secure Boot process in an attempt to execute other attacks to obtain access to the contents of the device. An attacker must first obtain physical access to the target system in order to exploit this vulnerability. It is also important to note that the contents of the drive(s) encrypted with TMEE FDE would still be protected and would NOT be accessible by the attacker by exploitation of this vulnerability alone.
Metrics
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Trendmicro | Trend Micro Endpoint Encryption | <= 6.0.0.3204 |
References
- https://success.trendmicro.com/solution/000292473Vendor Advisory
- https://success.trendmicro.com/solution/000292473Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-28005?
How severe is CVE-2023-28005?
How do I fix CVE-2023-28005?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-2800Insecure Temporary File in GitHub repository huggingface/tra…4.7
- CVE-2023-28000An improper neutralization of special elements used in an OS…7.8
- CVE-2023-28001An insufficient session expiration in Fortinet FortiOS 7.0.0…9.8
- CVE-2023-28002An improper validation of integrity check value vulnerabilit…6.7
- CVE-2023-28003 A CWE-613: Insufficient Session Expiration vulnerability …8.8
- CVE-2023-28004 A CWE-129: Improper validation of an array index vulnerab…9.8
- CVE-2023-28006The OSD Bare Metal Server uses a cryptographic algorithm tha…7.8
- CVE-2023-28008HCL Workload Automation 9.4, 9.5, and 10.1 are vulnerable to…8.1
- CVE-2023-28009HCL Workload Automation is vulnerable to an XML External Ent…8.1
- CVE-2023-2801Grafana is an open-source platform for monitoring and observ…5.3
- CVE-2023-28010In some configuration scenarios, the Domino server host name…5.3
- CVE-2023-28012HCL BigFix Mobile is vulnerable to a command injection attac…8.8
Are you affected by CVE-2023-28005?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
