DLL Hijacking Vulnerability in Trend Micro Password Manager
CVE-2019-14687
7.8HIGH
Key Information:
- Vendor
- Trend Micro
- Vendor
- CVE Published:
- 20 August 2019
Summary
A vulnerability exists in Trend Micro Password Manager 5.0 that can be exploited through DLL hijacking. This allows an attacker to load an arbitrary unsigned DLL into a process of the signed service. If successfully exploited, this vulnerability could give attackers the ability to execute malicious code, potentially compromising the integrity and security of the affected system.
Affected Version(s)
Trend Micro Password Manager 2019 (5.0)
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved