A directory traversal vulnerability in Trend Micro Deep Security and Cloud One - Workload Security Agent for Linux version 20 and below could allow an attacker to read arbitrary files from the file system. Please note: an attacker must first obtain compromised access to the target Deep Security Manager (DSM) or the target agent must be not yet activated or configured in order to exploit this vulnerability.
Conclusion & alert: CVE-2022-23119 is rated High Exploit Risk (84.1/100): CVSS High severity, with high exploitation likelihood (EPSS 22.25%, 97th percentile). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). EPSS rose +20.84% over the last day, indicating growing attacker interest. Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
| EDB-ID | Source | Kind | Published | Link |
|---|---|---|---|---|
| — | nvd_ref | exploit_tag | Exploit-DB ↗ |
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 1.41% | 22.25% | +20.84% |
| 2 | 2026-05-30 | 1.22% | 1.41% | +0.19% |
| 3 | 2025-11-21 | — | 1.22% | — |
Full EPSS history (14 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.5 | 3.1 | HIGH |
|
3.9 | 3.6 | [email protected] |
| 4.3 | 2.0 | MEDIUM |
|
8.6 | 2.9 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| trendmicro | deep_security_agent | >= 20.0, < 20.0.0-3445 | cpe:2.3:a:trendmicro:deep_security_agent:*:*:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:-:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update1:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update10:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update11:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update12:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update13:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update14:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update15:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update16:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update17:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update18:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update19:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update2:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update20:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update21:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update22:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update23:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update24:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update25:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update26:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update27:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update28:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update29:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update3:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update30:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update31:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update4:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update5:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update6:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update7:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update8:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 10.0 | cpe:2.3:a:trendmicro:deep_security_agent:10.0:update9:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:-:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update1:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update10:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update11:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update12:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update13:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update14:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update15:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update16:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update17:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update18:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update19:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update2:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update20:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update21:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update22:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update23:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update24:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update25:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update26:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update27:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update3:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update4:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update5:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update6:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update7:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update8:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 11.0 | cpe:2.3:a:trendmicro:deep_security_agent:11.0:update9:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:-:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update1:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update10:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update11:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update12:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update13:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update14:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update15:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update16:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update17:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update18:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update19:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update2:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update20:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update21:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update3:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update4:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update5:*:*:long_term_support:*:*:* |
| trendmicro | deep_security_agent | 12.0 | cpe:2.3:a:trendmicro:deep_security_agent:12.0:update6:*:*:long_term_support:*:*:* |
| URL | Tags |
|---|---|
| https://success.trendmicro.com/solution/000290104 | Mitigation Patch Vendor Advisory |
| https://www.modzero.com/advisories/MZ-21-02-Trendmicro.txt | Exploit Third Party Advisory |