Error Message Information Disclosure in Trend Micro Antivirus for Mac 2020
CVE-2020-27015
4.4MEDIUM
Key Information:
- Vendor
- Trend Micro
- Vendor
- CVE Published:
- 30 October 2020
Summary
Trend Micro Antivirus for Mac 2020 is susceptible to an information disclosure vulnerability that can expose sensitive kernel pointers and debug messages to userland. To exploit this issue, an attacker must first gain the ability to execute high-privileged code on the affected system, which could potentially facilitate further attacks or lead to unauthorized access to confidential data. It is crucial for users of this antivirus product to be aware of this vulnerability and take necessary action to secure their systems.
Affected Version(s)
Trend Micro Antivirus for Mac (Consumer) 2020 (v10.x) and below
References
CVSS V3.1
Score:
4.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved