Link Following Vulnerability in Trend Micro Maximum Security 2022
CVE-2022-30687

7.1HIGH

Key Information:

Vendor
CVE Published:
27 May 2022

Summary

Trend Micro Maximum Security 2022 has a link following vulnerability that can be exploited by a local user with low privileges. This flaw allows the manipulation of the product's secure erase feature, potentially enabling the deletion of arbitrary files on the system. Users should be aware of this risk to ensure their data remains secure.

Affected Version(s)

Trend Micro Maximum Security 2022 (17.7)

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.