Link Following Vulnerability in Trend Micro Security 2022
CVE-2022-34893
7.8HIGH
Key Information:
- Vendor
- Trend Micro
- Vendor
- CVE Published:
- 19 September 2022
Summary
Trend Micro Security 2022 is susceptible to a link following vulnerability that permits attackers with lower privileges to manipulate mountpoints. This manipulation can potentially lead to a privilege escalation, allowing an unauthorized user to gain elevated access or control over the affected machine. It is crucial for users of Trend Micro Security 2022 to apply security best practices and stay informed about updates to mitigate risks associated with this vulnerability.
Affected Version(s)
Trend Micro Security (Consumer) 2022 (17.7.1179 and below)
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved