Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9hh8-9m39-758p

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Trend Micro Security 2020 (Consumer) contains a vulnerability in the installer package that could be exploited by placing a malicious DLL in a non-protected location with high privileges (symlink attack) which can lead to obtaining administrative privileges during the installation of the product.

Trend Micro Security 2020 (Consumer) contains a vulnerability in the installer package that could be exploited by placing a malicious DLL in a non-protected location with high privileges (symlink attack) which can lead to obtaining administrative privileges during the installation of the product.

EPSS

Процентиль: 16%
0.00051
Низкий

7.8 High

CVSS3

Дефекты

CWE-426
CWE-59

Связанные уязвимости

CVSS3: 7.8
nvd
около 5 лет назад

Trend Micro Security 2020 (Consumer) contains a vulnerability in the installer package that could be exploited by placing a malicious DLL in a non-protected location with high privileges (symlink attack) which can lead to obtaining administrative privileges during the installation of the product.

EPSS

Процентиль: 16%
0.00051
Низкий

7.8 High

CVSS3

Дефекты

CWE-426
CWE-59