Link Following Vulnerability in Trend Micro Security 2022
CVE-2022-34893

7.8HIGH

Key Information:

Vendor
CVE Published:
19 September 2022

Summary

Trend Micro Security 2022 is susceptible to a link following vulnerability that permits attackers with lower privileges to manipulate mountpoints. This manipulation can potentially lead to a privilege escalation, allowing an unauthorized user to gain elevated access or control over the affected machine. It is crucial for users of Trend Micro Security 2022 to apply security best practices and stay informed about updates to mitigate risks associated with this vulnerability.

Affected Version(s)

Trend Micro Security (Consumer) 2022 (17.7.1179 and below)

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.